PT-2023-1482 · Amd · Amd System Management Unit+1
Published
2023-01-10
·
Updated
2023-01-20
·
CVE-2022-23813
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
AMD Secure Processor (ASP) and System Management Unit (SMU) (affected versions not specified)
Description
The issue is related to the software interfaces of ASP and SMU, which may not properly enforce the SNP memory security policy. This could lead to a potential loss of integrity of guest memory in a confidential compute environment. The vulnerability is also described as a buffer overflow issue in the memory, which could allow a remote attacker to impact the integrity of protected information.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Buffer Overflow
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Amd Secure Processor
Amd System Management Unit