CVE-2023-20584 - CERT CVE
ID CVE-2023-20584
Sažetak IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.
Reference
CVSS
Base: 5.3
Impact: 4.0
Exploitability:0.8
Pristup
VektorSloženostAutentikacija
LOCAL HIGH HIGH
Impact
PovjerljivostCjelovitostDostupnost
NONE HIGH NONE
CVSS vektor CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:H/A:N
Zadnje važnije ažuriranje 12-12-2024 - 20:29
Objavljeno 13-08-2024 - 17:15