CVE-2023-20584: Medium severity amd epyc 8024pn firmware vulnerability
IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-20584?
CVE-2023-20584 has been classified as a high severity vulnerability.
How do I fix CVE-2023-20584?
To mitigate CVE-2023-20584, update the affected AMD EPYC firmware to the latest version that addresses the vulnerability.
Which systems are affected by CVE-2023-20584?
CVE-2023-20584 affects AMD EPYC processors with specific firmware versions up to genoapi_1.0.0.b.
What causes CVE-2023-20584?
CVE-2023-20584 is caused by improper handling of certain special address ranges with invalid device table entries by the IOMMU.
What could be the impact of CVE-2023-20584?
Exploitation of CVE-2023-20584 could lead to a loss of guest integrity in systems utilizing SEV-SNP if the hypervisor is compromised.