AMD Instinct Security Bulletins 2025-2026: Graphics Driver Vulnerabilities and MI300X Management Interface Exposure
| Bulletin | Key CVEs | Disclosed |
|---|---|---|
| AMD-SB-6016 | CVE-2024-21936, CVE-2024-21927, CVE-2024-21935 (MI300X SMC / Redfish API) | February 2025 |
| AMD-SB-6018 | CVE-2024-36342, CVE-2024-36352, CVE-2025-0010, CVE-2025-0011 | August 2025 |
| AMD-SB-6024 | CVE-2024-36324, CVE-2025-48518, CVE-2024-36316, CVE-2025-48508 | February 2026 |
| AMD-SB-6027 | CVE-2024-36323, CVE-2025-54511, CVE-2025-66660, CVE-2025-66664 and cluster | May 2026 |
For executives
AMD has published four significant Instinct and graphics security bulletins between February 2025 and May 2026. The most distinctive is AMD-SB-6016, which addresses vulnerabilities in the MI300X Satellite Management Controller — the network-accessible management interface for AMD's flagship data centre AI accelerator.
AMD-SB-6016: MI300X Satellite Management Controller vulnerabilities
The AMD Instinct MI300X includes a Satellite Management Controller (SMC) that handles hardware management tasks via the Redfish API.
- CVE-2024-21936 (CVSS 7.7 High): an attacker with basic authenticated Redfish API access can send specially crafted commands that cause OpenBMC to crash and reset — denial of service to the management plane.
- CVE-2024-21927 (medium): triggers the crash via special characters in API commands.
- CVE-2024-21935 (medium): allows data corruption via API manipulation.
AMD-SB-6018: August 2025 graphics vulnerability cluster
Includes CVE-2024-36342 (CVSS 8.8, heap overflow) and CVE-2024-36352 (CVSS 8.4, improper pointer validation). CVE-2025-0010 discovered by rico65536 from iceswordlab, and CVE-2025-0011 discovered by Aobo Wang.
AMD-SB-6024: February 2026 graphics driver cluster
CVE-2024-36324 and CVE-2024-36316 discovered by Daniel Jampen and Nicola Stauffer. CVE-2025-48508 was reported by Microsoft through coordinated disclosure — reflecting that hyperscaler-scale GPU deployments are producing real security research from the operators themselves.
AMD-SB-6027: May 2026 graphics vulnerability cluster
The largest of the four bulletins by CVE count, including CVE-2024-36323, CVE-2025-54511, CVE-2025-66660, CVE-2025-66664, CVE-2026-0427, CVE-2026-0428, and further internally found older CVEs.
Patch
AMD-SB-6016: restrict MI300X BMC/SMC ports to a dedicated management network. AMD-SB-6018: update to ROCm 6.4 or later for Instinct accelerators. AMD-SB-6024 and AMD-SB-6027: update to driver versions specified in each bulletin.
