Source |
The Hacker News |
Identifiant |
8646763 |
Date de publication |
2025-02-04 14:28:00 (vue: 2025-02-04 10:08:05) |
Titre |
AMD SEV-SNP Vulnerability Allows Malicious Microcode Injection with Admin Access |
Texte |
A security vulnerability has been disclosed in AMD\'s Secure Encrypted Virtualization (SEV) that could permit an attacker to load a malicious CPU microcode under specific conditions.
The flaw, tracked as CVE-2024-56161, carries a CVSS score of 7.2 out of 10.0, indicating high severity.
"Improper signature verification in AMD CPU ROM microcode patch loader may allow an attacker with local
A security vulnerability has been disclosed in AMD\'s Secure Encrypted Virtualization (SEV) that could permit an attacker to load a malicious CPU microcode under specific conditions.
The flaw, tracked as CVE-2024-56161, carries a CVSS score of 7.2 out of 10.0, indicating high severity.
"Improper signature verification in AMD CPU ROM microcode patch loader may allow an attacker with local |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
2024 56161 access admin allow allows amd attacker been carries conditions could cpu cve cvss disclosed encrypted flaw has high improper indicating injection load loader local malicious may microcode out patch permit rom score secure security sev severity signature snp specific tracked under verification virtualization vulnerability |
Tags |
Vulnerability
|
Stories |
|
Move |
|