CVE-2023-31347
Published Feb 13, 2024Due to a code bug in Secure_TSC, SEV firmware may allow an attacker with high privileges to cause a guest to observe an incorrect TSC when Secure TSC is enabled potentially result…
Vendor/product archive
6 CVEs tagged to amd / epyc_7773x — 0 Critical, 0 High, 5 Medium, 1 Low, 0 Unrated.
Due to a code bug in Secure_TSC, SEV firmware may allow an attacker with high privileges to cause a guest to observe an incorrect TSC when Secure TSC is enabled potentially result…
Failure to initialize memory in SEV Firmware may allow a privileged attacker to access stale data from other guests.
A privileged attacker can prevent delivery of debug exceptions to SEV-SNP guests potentially resulting in guests not receiving expected debug information.
Improper address validation in ASP with SNP enabled may potentially allow an attacker to compromise guest memory integrity.
A compromised or malicious ABL or UApp could send a SHA256 system call to the bootloader, which may result in exposure of ASP memory to userspace, potentially leading to informati…
Insufficient bounds checking in ASP may allow an attacker to issue a system call from a compromised ABL which may cause arbitrary memory values to be initialized to zero, potentia…