CVE-2024-36337: Integer Overflow
Published Apr 2, 2025
·Updated
Integer overflow within AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to loss of confidentiality, integrity or availability.
Event History
Apr 2, 2025
CVE Published
via MITRE·04:16 PM
Data Sourced
via MITRE·04:16 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Apr 8, 2025
News Published
via The Register·11:43 PM
News Published
via The Register·11:47 PM
Apr 12, 2025
Known Exploited
11:50 PM
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2024-36337?
CVE-2024-36337 has a high severity rating of 7.9.
2
What types of attacks can CVE-2024-36337 facilitate?
CVE-2024-36337 could allow a local attacker to perform out-of-bounds writes, potentially compromising confidentiality, integrity, or availability.
3
Who is affected by CVE-2024-36337?
CVE-2024-36337 impacts systems utilizing the AMD NPU Driver.
4
How do I fix CVE-2024-36337?
To remediate CVE-2024-36337, ensure that your system is up to date with the latest security patches from AMD.
5
Is CVE-2024-36337 actively being exploited?
Yes, CVE-2024-36337 is listed as actively exploited in the KEV (Known Exploited Vulnerabilities) database.