Local Privilege Escalation Vulnerability in AMD Products
CVE-2025-0029

1.8LOW

What is CVE-2025-0029?

This vulnerability involves improper handling of error conditions during host-induced faults. An attacker with local high privileges could exploit this flaw to selectively drop guest Direct Memory Access (DMA) writes, which may compromise the integrity of memory allocated to SEV-SNP guests. This presents a significant risk, as it could allow unauthorized access or manipulation of sensitive guest data.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

AMD EPYC™ 9005 Series Processors TurinPI 1.0.0.5

AMD EPYC™ Embedded 9005 Series Processors EmbTurinPI-SP5_1.0.0.0

References

CVSS V4

Score:
1.8
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.