Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-20582

CVSS 5.3 · Medium EPSS 0.01% · P0
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2023-20582

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Improper handling of invalid nested page table entries in the IOMMU may allow a privileged attacker to induce page table entry (PTE) faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest memory integrity.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:H/A:N
Source: NVD (National Vulnerability Database)
Vulnerability Type
CWE-1284
Source: NVD (National Vulnerability Database)
Vulnerability Title
AMD Server Processor 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
AMD Server Processor是美国超威半导体(AMD)公司的面向服务器市场的处理器产品,主要用于数据中心、云计算、高性能计算等领域。 AMD Server Processor存在安全漏洞,该漏洞源于IOMMU中对无效嵌套页表条目的不当处理可能允许特权攻击者诱发页表条目(PTE)故障以绕过SEV-SNP中的RMP检查,从而可能导致客户机内存完整性丧失。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
AMDAMD EPYC™ 9004 Processors GenoaPI 1.0.0.C -
AMDAMD EPYC™ Embedded 9004 EmbGenoaPI-SP5 1.0.0.7 -

II. Public POCs for CVE-2023-20582

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2023-20582

登录查看更多情报信息。

Same Patch Batch · AMD · 2025-02-11 · 16 CVEs total

CVE-2024-219248.2 HIGHAMD System Management Mode 安全漏洞
CVE-2024-219258.2 HIGHAMD System Management Mode 安全漏洞
CVE-2024-01798.2 HIGHAMD System Management Mode 安全漏洞
CVE-2023-313427.5 HIGHAMD Server Processor 输入验证错误漏洞
CVE-2023-313437.5 HIGHAMD Server Processor 输入验证错误漏洞
CVE-2023-313457.5 HIGHAMD Server Processor 输入验证错误漏洞
CVE-2024-219667.3 HIGHAMD Ryzen Master 安全漏洞
CVE-2023-313607.3 HIGHAMD Integrated Management Technology 安全漏洞
CVE-2023-313617.3 HIGHAMD Integrated Management Technology 安全漏洞
CVE-2023-313526.0 MEDIUMAMD Server Processor 缓冲区错误漏洞
CVE-2023-205155.7 MEDIUMAMD Client Processor 安全漏洞
CVE-2023-205085.0 MEDIUMAMD Graphics Driver 安全漏洞
CVE-2023-313313.0 LOWAMD Client Processor 安全漏洞
CVE-2023-205812.5 LOWAMD Server Processor 安全漏洞
CVE-2023-205072.3 LOWAMD Client Processor 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2023-20582

No comments yet


Leave a comment