2026-10-05 21:38CVE-2026-0461AMD
PUBLISHED5.2CWE-787

Insufficient boundary validation in the USB boot mode implementation of AMD Zynq™ UltraScale+ MPSoC and RFSoC devices could allow unbounded Device Firmware Upgrade (DFU) download requests to overflow the DDR receive buffer into FSBL memory, potentially resulting in unauthorized code execution during the boot process. This issue could impact the confidentiality, integrity, or availability of affected system.

Problem type

Affected products

AMD

Zynq™ UltraScale+ MPSoCs

2026.1 - UNAFFECTED

Zynq™ UltraScale+ RFSoCs

2026.1 - UNAFFECTED

Kria SOMs

2026.1 - UNAFFECTED

References

JSON source

https://cveawg.mitre.org/api/cve/CVE-2026-0461
Click to expand
{
  "dataType": "CVE_RECORD",
  "dataVersion": "5.2",
  "cveMetadata": {
    "cveId": "CVE-2026-0461",
    "assignerOrgId": "b58fc414-a1e4-4f92-9d70-1add41838648",
    "assignerShortName": "AMD",
    "dateUpdated": "2026-10-05T21:38:01.104Z",
    "dateReserved": "2025-12-06T15:11:19.042Z",
    "datePublished": "2026-10-05T21:38:01.104Z",
    "state": "PUBLISHED"
  },
  "containers": {
    "cna": {
      "providerMetadata": {
        "orgId": "b58fc414-a1e4-4f92-9d70-1add41838648",
        "shortName": "AMD",
        "dateUpdated": "2026-10-05T21:38:01.104Z"
      },
      "datePublic": "2026-10-05T21:37:49.096Z",
      "descriptions": [
        {
          "lang": "en",
          "value": "Insufficient boundary validation in the USB boot mode implementation of AMD Zynq™ UltraScale+ MPSoC and RFSoC devices could allow unbounded Device Firmware Upgrade (DFU) download requests to overflow the DDR receive buffer into FSBL memory, potentially resulting in unauthorized code execution during the boot process. This issue could impact the confidentiality, integrity, or availability of affected system.",
          "supportingMedia": [
            {
              "type": "text/html",
              "base64": false,
              "value": "Insufficient boundary validation in the USB boot mode implementation of AMD Zynq™ UltraScale+ MPSoC and RFSoC devices could allow unbounded Device Firmware Upgrade (DFU) download requests to overflow the DDR receive buffer into FSBL memory, potentially resulting in unauthorized code execution during the boot process. This issue could impact the confidentiality, integrity, or availability of affected system.<br>"
            }
          ]
        }
      ],
      "affected": [
        {
          "vendor": "AMD",
          "product": "Zynq™ UltraScale+ MPSoCs",
          "defaultStatus": "affected",
          "versions": [
            {
              "version": "2026.1",
              "status": "unaffected"
            }
          ]
        },
        {
          "vendor": "AMD",
          "product": "Zynq™ UltraScale+ RFSoCs",
          "defaultStatus": "affected",
          "versions": [
            {
              "version": "2026.1",
              "status": "unaffected"
            }
          ]
        },
        {
          "vendor": "AMD",
          "product": "Kria SOMs",
          "defaultStatus": "affected",
          "versions": [
            {
              "version": "2026.1",
              "status": "unaffected"
            }
          ]
        }
      ],
      "problemTypes": [
        {
          "descriptions": [
            {
              "lang": "en",
              "description": "CWE-787  Out-of-bounds Write",
              "cweId": "CWE-787",
              "type": "CWE"
            }
          ]
        }
      ],
      "references": [
        {
          "url": "https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-8029.html"
        }
      ],
      "metrics": [
        {
          "format": "CVSS",
          "scenarios": [
            {
              "lang": "en",
              "value": "GENERAL"
            }
          ]
        }
      ]
    }
  }
}