Privileged Attacker May Access Stale Data from Other Guests via Failure to Initialize Memory

CVE-2023-31346
Currently unrated 🤨

Key Information

Vendor
AMD
Status
3rd Gen AMD EPYC™ Processors
4th Gen AMD EPYC™ Processors
Vendor
CVE Published:
13 February 2024

Summary

Failure to initialize memory in SEV Firmware may allow a privileged attacker to access stale data from other guests.

Affected Version(s)

3rd Gen AMD EPYC™ Processors <= various

4th Gen AMD EPYC™ Processors <= various

Timeline

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database
.