Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fjcx-f2hr-qjjr

Опубликовано: 10 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 4

Описание

Insufficient Granularity of Access Control in SEV firmware can allow a privileged attacker to create a SEV-ES Guest to attack SNP guest, potentially resulting in a loss of confidentiality.

Insufficient Granularity of Access Control in SEV firmware can allow a privileged attacker to create a SEV-ES Guest to attack SNP guest, potentially resulting in a loss of confidentiality.

EPSS

Процентиль: 7%
0.00023
Низкий

4 Medium

CVSS4

Дефекты

CWE-1220

Связанные уязвимости

ubuntu
4 месяца назад

Insufficient Granularity of Access Control in SEV firmware can allow a privileged attacker to create a SEV-ES Guest to attack SNP guest, potentially resulting in a loss of confidentiality.

nvd
4 месяца назад

Insufficient Granularity of Access Control in SEV firmware can allow a privileged attacker to create a SEV-ES Guest to attack SNP guest, potentially resulting in a loss of confidentiality.

debian
4 месяца назад

Insufficient Granularity of Access Control in SEV firmware can allow a ...

CVSS3: 3.2
fstec
4 месяца назад

Уязвимость технологии Secure Encrypted Virtualization (SEV) микропрограммного обеспечения процессоров AMD, позволяющая нарушителю оказать воздействие на конфиденциальность защищаемой информации

EPSS

Процентиль: 7%
0.00023
Низкий

4 Medium

CVSS4

Дефекты

CWE-1220