MinorCritical vulnerability
CVE-2026-43598 (CVSS 7.7)
NVD · officialPublished Oct 6, 2026Risk 23/100
Improper input validation in the AMD ROCm Communication Collectives Library (RCCL) could allow a compromised peer rank or network-adjacent attacker to dereference an attacker-controlled pointer, potentially resulting in remote code execution.
Technical details
CVSS
7.7
AV:NetworkAC:HighPR:LowUI:None
Evidence and sources
This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.
Open primary source