Published: 11 May 2022, 16:40
Last modified:16 Sept 2024, 23:46

Vulnerability Summary

Overall Risk (default)
medium
26/100
CVSS Score
6.5 MEDIUM
v3.1 (nvd)
EPSS Score
0.1% LOW
0% probability +0.02%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

11 May 2022, 16:40
Published
Vulnerability first disclosed
16 Sept 2024, 23:46
Last Modified
Vulnerability information updated

Description

An attacker with access to a malicious hypervisor may be able to infer data values used in a SEV guest on AMD CPUs by monitoring ciphertext values over time.

CVSS Metrics

  • v3.1MEDIUMScore: 6.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
  • v2.0LOWScore: 2.1AV:L/AC:L/Au:N/C:P/I:N/A:N

EPSS Trends

Current EPSS score: 0.10% Percentile: 28%

Techniques & Countermeasures

  • CWE-203Observable Discrepancy

    The product behaves differently or sends different responses under different circumstances in a way that is observable to an unauthorized actor.

Affected Systems

  • amdamd processors

    Processor EPYC

  • amdepyc_7001_firmware

    na

  • amdepyc_7002_firmware

    na

  • amdepyc_7003_firmware

    na

  • amdepyc_7232p_firmware

    na

  • amdepyc_7251_firmware

    na

  • amdepyc_7252_firmware

    na

  • amdepyc_7261_firmware

    na

  • amdepyc_7262_firmware

    na

  • amdepyc_7272_firmware

    na

  • amdepyc_7281_firmware

    na

  • amdepyc_7282_firmware

    na

  • amdepyc_7301_firmware

    na

  • amdepyc_7302_firmware

    na

  • amdepyc_7302p_firmware

    na

  • amdepyc_7313_firmware

    na

  • amdepyc_7313p_firmware

    na

  • amdepyc_7343_firmware

    na

  • amdepyc_7351_firmware

    na

  • amdepyc_7351p_firmware

    na

  • amdepyc_7352_firmware

    na

  • amdepyc_7371_firmware

    na

  • amdepyc_7401_firmware

    na

  • amdepyc_7401p_firmware

    na

  • amdepyc_7402_firmware

    na

  • amdepyc_7402p_firmware

    na

  • amdepyc_7413_firmware

    na

  • amdepyc_7443_firmware

    na

  • amdepyc_7443p_firmware

    na

  • amdepyc_7451_firmware

    na

  • amdepyc_7452_firmware

    na

  • amdepyc_7453_firmware

    na

  • amdepyc_7501_firmware

    na

  • amdepyc_7502_firmware

    na

  • amdepyc_7502p_firmware

    na

  • amdepyc_7513_firmware

    na

  • amdepyc_7532_firmware

    na

  • amdepyc_7542_firmware

    na

  • amdepyc_7543_firmware

    na

  • amdepyc_7543p_firmware

    na

  • amdepyc_7551_firmware

    na

  • amdepyc_7551p_firmware

    na

  • amdepyc_7552_firmware

    na

  • amdepyc_7601_firmware

    na

  • amdepyc_7642_firmware

    na

  • amdepyc_7643_firmware

    na

  • amdepyc_7662_firmware

    na

  • amdepyc_7663_firmware

    na

  • amdepyc_7702_firmware

    na

  • amdepyc_7702p_firmware

    na

Showing first 50 affected entries in server-rendered view.

References (2)