Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 20 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Amd
Amd epyc 7003 Series Processors Amd epyc 9004 Series Processors Amd epyc Embedded 7003 Series Processors Amd epyc Embedded 9004 Series Processors |
|
| Vendors & Products |
Amd
Amd epyc 7003 Series Processors Amd epyc 9004 Series Processors Amd epyc Embedded 7003 Series Processors Amd epyc Embedded 9004 Series Processors |
Fri, 17 Apr 2026 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Insufficient RMP Checks in IOMMU Allow Host Buffer Out‑of‑Bounds Access |
Thu, 16 Apr 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insuffient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised HV to trigger an out of bounds condition without RMP checks resulting in a potential loss of confidential guest integrity. | Insufficient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised hypervisor to trigger an out of bounds condition without RMP checks, resulting in a potential loss of confidential guest integrity. |
Thu, 16 Apr 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 16 Apr 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insuffient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised HV to trigger an out of bounds condition without RMP checks resulting in a potential loss of confidential guest integrity. | |
| Weaknesses | CWE-788 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: AMD
Published:
Updated: 2026-04-16T19:12:06.991Z
Reserved: 2022-10-27T18:53:39.759Z
Link: CVE-2023-20585
Updated: 2026-04-16T18:58:11.213Z
Status : Awaiting Analysis
Published: 2026-04-16T19:16:31.430
Modified: 2026-04-17T15:14:05.510
Link: CVE-2023-20585
No data.
OpenCVE Enrichment
Updated: 2026-04-20T15:00:09Z