USN-8888-2: Linux kernel (Azure) vulnerabilities
Ubuntu patched Azure Linux kernels, including AMD SEV-SNP flaw CVE-2023-20585 that a local hypervisor attacker could abuse.
Ubuntu issued USN-8888-2 for Linux kernel packages on Microsoft Azure. The notice includes CVE-2023-20585, in which some AMD processors failed Reverse Map Table checks when the IOMMU accessed certain host buffers, potentially letting a local attacker with hypervisor access cause an out-of-bounds condition and compromise SEV-SNP guest memory integrity. It also corrects additional kernel flaws across ARM64, ARM32, MIPS, OpenRISC, PowerPC, RISC-V, NVDIMM drivers and the Handshake API. The text does not say the issues are being exploited.