Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jhpq-g463-wv89

Опубликовано: 10 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 4.6

Описание

Insufficient Granularity of Access Control in SEV firmware could allow a privileged user with a malicious hypervisor to create a SEV-ES guest with an ASID in the range meant for SEV-SNP guests potentially resulting in a partial loss of confidentiality.

Insufficient Granularity of Access Control in SEV firmware could allow a privileged user with a malicious hypervisor to create a SEV-ES guest with an ASID in the range meant for SEV-SNP guests potentially resulting in a partial loss of confidentiality.

EPSS

Процентиль: 2%
0.00012
Низкий

4.6 Medium

CVSS4

Дефекты

CWE-1220

Связанные уязвимости

ubuntu
5 дней назад

Insufficient Granularity of Access Control in SEV firmware could allow a privileged user with a malicious hypervisor to create a SEV-ES guest with an ASID in the range meant for SEV-SNP guests potentially resulting in a partial loss of confidentiality.

nvd
5 дней назад

Insufficient Granularity of Access Control in SEV firmware could allow a privileged user with a malicious hypervisor to create a SEV-ES guest with an ASID in the range meant for SEV-SNP guests potentially resulting in a partial loss of confidentiality.

debian
5 дней назад

Insufficient Granularity of Access Control in SEV firmware could allow ...

EPSS

Процентиль: 2%
0.00012
Низкий

4.6 Medium

CVSS4

Дефекты

CWE-1220