Skip to main content

AMD Instinct Security Bulletins 2025-2026: Graphics Driver Vulnerabilities and MI300X Management Interface Exposure

BulletinKey CVEsDisclosed
AMD-SB-6016CVE-2024-21936, CVE-2024-21927, CVE-2024-21935 (MI300X SMC / Redfish API)February 2025
AMD-SB-6018CVE-2024-36342, CVE-2024-36352, CVE-2025-0010, CVE-2025-0011August 2025
AMD-SB-6024CVE-2024-36324, CVE-2025-48518, CVE-2024-36316, CVE-2025-48508February 2026
AMD-SB-6027CVE-2024-36323, CVE-2025-54511, CVE-2025-66660, CVE-2025-66664 and clusterMay 2026

For executives

AMD has published four significant Instinct and graphics security bulletins between February 2025 and May 2026. The most distinctive is AMD-SB-6016, which addresses vulnerabilities in the MI300X Satellite Management Controller — the network-accessible management interface for AMD's flagship data centre AI accelerator.

AMD-SB-6016: MI300X Satellite Management Controller vulnerabilities

The AMD Instinct MI300X includes a Satellite Management Controller (SMC) that handles hardware management tasks via the Redfish API.

  • CVE-2024-21936 (CVSS 7.7 High): an attacker with basic authenticated Redfish API access can send specially crafted commands that cause OpenBMC to crash and reset — denial of service to the management plane.
  • CVE-2024-21927 (medium): triggers the crash via special characters in API commands.
  • CVE-2024-21935 (medium): allows data corruption via API manipulation.

AMD-SB-6018: August 2025 graphics vulnerability cluster

Includes CVE-2024-36342 (CVSS 8.8, heap overflow) and CVE-2024-36352 (CVSS 8.4, improper pointer validation). CVE-2025-0010 discovered by rico65536 from iceswordlab, and CVE-2025-0011 discovered by Aobo Wang.

AMD-SB-6024: February 2026 graphics driver cluster

CVE-2024-36324 and CVE-2024-36316 discovered by Daniel Jampen and Nicola Stauffer. CVE-2025-48508 was reported by Microsoft through coordinated disclosure — reflecting that hyperscaler-scale GPU deployments are producing real security research from the operators themselves.

AMD-SB-6027: May 2026 graphics vulnerability cluster

The largest of the four bulletins by CVE count, including CVE-2024-36323, CVE-2025-54511, CVE-2025-66660, CVE-2025-66664, CVE-2026-0427, CVE-2026-0428, and further internally found older CVEs.

Patch

AMD-SB-6016: restrict MI300X BMC/SMC ports to a dedicated management network. AMD-SB-6018: update to ROCm 6.4 or later for Instinct accelerators. AMD-SB-6024 and AMD-SB-6027: update to driver versions specified in each bulletin.