Skip to main content

Improper Access Control for Register Interface

CVE-2025-54509

Severity Medium
Score 4/10

Summary

Improper access control for register interface in the input-output memory management unit (IOMMU) could allow a privileged attacker to cause non-coherent accesses by the AMD secure processor (ASP) potentially resulting in loss of integrity.

  • LOW
  • LOCAL
  • NONE
  • HIGH

CWE-1262 - Improper Access Control for Register Interface

The product uses memory-mapped I/O registers that act as an interface to hardware functionality from software, but there is improper access control to those registers.

References

Advisory Timeline

  • Published