AMD EPYC Processors SEV-SNP Guest Memory Integrity Vulnerability
Vulnerability
A vulnerability exists in AMD EPYC processors that improperly manages error conditions during host-induced faults. This flaw can enable a local high-privileged attacker to selectively drop guest Direct Memory Access (DMA) writes, potentially compromising the integrity of Secure Encrypted Virtualization - Secure Nested Paging (SEV-SNP) guest memory.
Impact
Exploitation of this vulnerability can lead to a loss of integrity in SEV-SNP guest memory.
Remediation
Users are advised to update to the AMD EPYC Platform Initialization (PI) or Secure Encrypted Virtualization (SEV) firmware version provided by their Original Equipment Manufacturer (OEM).
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
