Improper Input Validation in IOMMU Affects AMD Products
CVE-2024-21953
5.9MEDIUM
Key Information:
- Vendor
Amd
- Status
- Vendor
- CVE Published:
- 10 February 2026
What is CVE-2024-21953?
A vulnerability in AMD's IOMMU implementation poses a risk where inadequate input validation could permit a malicious hypervisor to modify IOMMU registers. This manipulation can lead to significant data integrity issues for guest systems, compromising their reliability and security. Affected users should take precautionary measures to safeguard their environments against potential exploitation.
Affected Version(s)
AMD EPYC™ 8004 Series Processors GenoaPI 1.0.0.F
AMD EPYC™ 9004 Series Processors GenoaPI 1.0.0.F
AMD EPYC™ Embedded 9004 Series Processors EmbGenoaPI-SP5 1.0.0.B