Persistence of Untrusted Platform Configuration Risks Memory Access
CVE-2023-20591
Key Information:
- Vendor
Amd
- Status
- Vendor
- CVE Published:
- 13 August 2024
What is CVE-2023-20591?
The vulnerability arises from the improper re-initialization of the Input/Output Memory Management Unit (IOMMU) during the Dynamic Root of Trust for Measurement (DRTM) event. This flaw may enable an untrusted platform configuration to persist, which could allow attackers to read or modify hypervisor memory. The repercussions of this vulnerability include potential threats to the confidentiality, integrity, and availability of the affected systems, marking significant concerns for users relying on AMD hypervisor technologies.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
AMD EPYC™ 7003 Series Processors MilanPI 1.0.0.B
AMD EPYC™ 9004 Series Processors Genoa 1.0.0.8
AMD EPYC™ Embedded 7003 Series Processors EmbMilanPI-SP3 1.0.0.7
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved