CVE-2023-20591

Published Aug 13, 2024

Last updated 2 months ago

Overview

Description
Improper re-initialization of IOMMU during the DRTM event may permit an untrusted platform configuration to persist, allowing an attacker to read or modify hypervisor memory, potentially resulting in loss of confidentiality, integrity, and availability.
Source
psirt@amd.com
NVD status
Modified

Risk scores

CVSS 3.1

Type
Primary
Base score
10
Impact score
6
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

nvd@nist.gov
CWE-665
134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-665

Social media

Hype score
Not currently trending

Configurations