CVE-2020-12966
—CVSS 3.1
5.5 medium
EPSS
<1%p24
Published
()
Modified
Description
AMD EPYC™ Processors contain an information disclosure vulnerability in the Secure Encrypted Virtualization with Encrypted State (SEV-ES) and Secure Encrypted Virtualization with Secure Nested Paging (SEV-SNP). A local authenticated attacker could potentially exploit this vulnerability leading to leaking guest data by the malicious hypervisor.
- Vendors
- amd
- Products
- epyc 7763 firmware, epyc 7713p firmware, epyc 7713 firmware, epyc 7663 firmware, epyc 7643 firmware, epyc 75f3 firmware, epyc 7543p firmware, epyc 7543 firmware, epyc 7513 firmware, epyc 74f3 firmware, epyc 7453 firmware, epyc 7443p firmware
- Weakness
- CWE-200
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.