Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-20585

Опубликовано: 14 апр. 2026
Источник: redhat
CVSS3: 5.3
EPSS Низкий

Описание

Insufficient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised hypervisor to trigger an out of bounds condition without RMP checks, resulting in a potential loss of confidential guest integrity.

A flaw was found in hw. Insufficient checks of the RMP on host buffer access in the Input-Output Memory Management Unit (IOMMU) allows an attacker with privileges and a compromised hypervisor to trigger an out-of-bounds condition without RMP checks. This issue results in the potential loss of guest integrity.

Отчет

Red Hat has stack protection mechanisms in place, such as FORTIFY_SOURCE, Position Independent Executables or Stack Smashing Protection.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10kernelWill not fix
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelNot affected
Red Hat Enterprise Linux 7kernel-rtNot affected
Red Hat Enterprise Linux 8kernelFix deferred
Red Hat Enterprise Linux 8kernel-rtFix deferred
Red Hat Enterprise Linux 9kernelWill not fix
Red Hat Enterprise Linux 9kernel-rtAffected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=2361464kernel-core: hw: amd: AMD-SN-3016: IOMMU Write Buffer Vulnerability

EPSS

Процентиль: 1%
0.00098
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

ubuntu
5 месяцев назад

Insufficient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised hypervisor to trigger an out of bounds condition without RMP checks, resulting in a potential loss of confidential guest integrity.

nvd
5 месяцев назад

Insufficient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised hypervisor to trigger an out of bounds condition without RMP checks, resulting in a potential loss of confidential guest integrity.

CVSS3: 5.3
msrc
5 месяцев назад

AMD: CVE-2023-20585 IOMMU Write Buffer Vulnerability

github
5 месяцев назад

Insufficient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised hypervisor to trigger an out of bounds condition without RMP checks, resulting in a potential loss of confidential guest integrity.

CVSS3: 5.3
fstec
около 1 года назад

Уязвимость блока управления памятью для операций ввода-вывода IOMMU микропрограммного обеспечения процессоров AMD, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 1%
0.00098
Низкий

5.3 Medium

CVSS3

Уязвимость CVE-2023-20585