Improper Input Validation in IOMMU Affects AMD Products
CVE-2024-21953

5.9MEDIUM

What is CVE-2024-21953?

A vulnerability in AMD's IOMMU implementation poses a risk where inadequate input validation could permit a malicious hypervisor to modify IOMMU registers. This manipulation can lead to significant data integrity issues for guest systems, compromising their reliability and security. Affected users should take precautionary measures to safeguard their environments against potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

AMD EPYC™ 8004 Series Processors GenoaPI 1.0.0.F

AMD EPYC™ 9004 Series Processors GenoaPI 1.0.0.F

AMD EPYC™ Embedded 9004 Series Processors EmbGenoaPI-SP5 1.0.0.B

References

CVSS V4

Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.