allow a privileged attacker to corrupt guest private memory, potentially
resulting in a loss of data integrity.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-35667 | Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity. |
Ubuntu USN |
USN-7561-1 | AMD Microcode vulnerabilities |
Tue, 11 Feb 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 30 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-459 |
Tue, 29 Oct 2024 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | kernel: hw: amd:Incomplete system memory cleanup in SEV firmware corrupt guest private memory | kernel: hw:amd: Incomplete system memory cleanup in SEV firmware corrupt guest private memory |
Wed, 02 Oct 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat enterprise Linux
Redhat rhel Eus |
|
| CPEs | cpe:/o:redhat:enterprise_linux:8 cpe:/o:redhat:enterprise_linux:9 cpe:/o:redhat:rhel_eus:8.8 cpe:/o:redhat:rhel_eus:9.2 |
|
| Vendors & Products |
Redhat enterprise Linux
Redhat rhel Eus |
Tue, 01 Oct 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat
Redhat rhel Aus Redhat rhel E4s Redhat rhel Tus |
|
| CPEs | cpe:/o:redhat:rhel_aus:8.6 cpe:/o:redhat:rhel_e4s:8.6 cpe:/o:redhat:rhel_tus:8.6 |
|
| Vendors & Products |
Redhat
Redhat rhel Aus Redhat rhel E4s Redhat rhel Tus |
Fri, 16 Aug 2024 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | kernel: hw: amd:Incomplete system memory cleanup in SEV firmware corrupt guest private memory | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Wed, 14 Aug 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 13 Aug 2024 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: AMD
Published:
Updated: 2025-02-11T22:48:16.160Z
Reserved: 2023-04-27T15:25:41.428Z
Link: CVE-2023-31356
Updated: 2024-08-14T15:46:35.751Z
Status : Deferred
Published: 2024-08-13T17:15:21.733
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-31356
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN