AMD Optional Tools OpenSSL Init DLL Injection (CVE-2025-62628)
CVE-2025-62628 Published on May 14, 2026
Unsafe OpenSSL initialization within some AMD optional tools may allow a local user-privileged attacker to inject a malicious DLL, potentially resulting in arbitrary code execution.
Weakness Type
What is a DLL preloading Vulnerability?
The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.
CVE-2025-62628 has been classified to as a DLL preloading vulnerability or weakness.
Affected Versions
AMD AIM-T Manageability Service:- Version AIM-T Manageability Service 5.1.0.1382 is unaffected.
- Version AMD Cloud Manageability Service (ACMS) 2.0.0.295 is unaffected.
- Version AMD Management Plug-In for SCCM 8.0.0.1411 is unaffected.
- Version AMD Management Console (AMC) 12.0.0.1378 is unaffected.
- Version AMD Manageability API 8.0.0.346 is unaffected.
- Version DASH CLI - Command Line Application 8.0.0.318 is unaffected.