Skip to main content

CVE-2023-20584

Severity Medium
Score 5.3/10

Summary

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

  • HIGH
  • LOCAL
  • HIGH
  • CHANGED
  • NONE
  • HIGH
  • NONE
  • NONE

References

Advisory Timeline

  • Published