ZeroHour

CVE-2020-12966

CVSS 3.1
5.5 medium
EPSS
<1%p24
Published
()
Modified
Description

AMD EPYC™ Processors contain an information disclosure vulnerability in the Secure Encrypted Virtualization with Encrypted State (SEV-ES) and Secure Encrypted Virtualization with Secure Nested Paging (SEV-SNP). A local authenticated attacker could potentially exploit this vulnerability leading to leaking guest data by the malicious hypervisor.

Vendors
amd
Products
epyc 7763 firmware, epyc 7713p firmware, epyc 7713 firmware, epyc 7663 firmware, epyc 7643 firmware, epyc 75f3 firmware, epyc 7543p firmware, epyc 7543 firmware, epyc 7513 firmware, epyc 74f3 firmware, epyc 7453 firmware, epyc 7443p firmware
Weakness
CWE-200
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.