PT-2024-11959 · Iommu+2 · Iommu+2

Published

2024-08-13

·

Updated

2025-08-13

·

CVE-2023-20591

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description The issue involves improper re-initialization of IOMMU during the DRTM event, which may permit an untrusted platform configuration to persist. This could allow an attacker to read or modify hypervisor memory, potentially resulting in loss of confidentiality, integrity, and availability.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Initialization

Weakness Enumeration

Related Identifiers

BDU:2025-09859
CVE-2023-20591

Affected Products

Drtm
Iommu
Red Os