Improper Handling of Nested Page Table Entries in AMD Products
CVE-2023-20582
Key Information:
- Vendor
Amd
- Vendor
- CVE Published:
- 11 February 2025
What is CVE-2023-20582?
An improper handling of invalid nested page table entries in AMD's IOMMU could allow an attacker with privileged access to induce faults in page table entries, potentially circumventing RMP checks within the Secure Encrypted Virtualization-Secure Nested Paging (SEV-SNP) framework. This flaw poses serious risks to the integrity of guest memory, potentially affecting the security of virtualized environments.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
AMD EPYC™ 9004 Processors GenoaPI 1.0.0.C
AMD EPYC™ Embedded 9004 EmbGenoaPI-SP5 1.0.0.7
AMD EPYC™ 9004 Processors GenoaPI 1.0.0.C
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved