AMD Secure Processor Parameter Leak Enables Arbitrary Code Exec
CVE-2023-20514 Published on February 11, 2026

Improper handling of parameters in the AMD Secure Processor (ASP) could allow a privileged attacker to pass an arbitrary memory value to functions in the trusted execution environment resulting in arbitrary code execution

NVD

Weakness Type

Improper Handling of Parameters

The software does not properly handle when the expected number of parameters, fields, or arguments is not provided in input, or if those parameters are undefined.


Affected Versions

AMD Radeon™ RX 6000 Series Graphics Products: AMD Radeon™ PRO W6000 Series Graphics Products: AMD Radeon™ RX 7000 Series Graphics Products: AMD Radeon™ PRO W7000 Series Graphics Products: AMD Radeon™ PRO VII: AMD Radeon™ VII: AMD Radeon™ PRO V620: AMD Radeon™ PROV710:

Exploit Probability

EPSS
0.01%
Percentile
0.71%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.