Логотип exploitDog
bind:"CVE-2023-20584" OR bind:"CVE-2023-31315" OR bind:"CVE-2023-31356"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-20584" OR bind:"CVE-2023-31315" OR bind:"CVE-2023-31356"

Количество 28

Количество 28

rocky логотип

RLSA-2024:7481

около 1 месяца назад

Important: linux-firmware security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-12797

8 месяцев назад

ELSA-2024-12797: linux-firmware security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2023-20584

10 месяцев назад

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2023-20584

10 месяцев назад

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2023-20584

10 месяцев назад

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-20584

10 месяцев назад

IOMMU improperly handles certain special address ranges with invalid d ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-7cfh-j5pv-fw3c

10 месяцев назад

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2025-03959

10 месяцев назад

Уязвимость микрокода процессоров AMD64 Microcode, связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю оказать воздействие на целостность данных

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2023-31356

10 месяцев назад

Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.

CVSS3: 4.4
EPSS: Низкий
redhat логотип

CVE-2023-31356

10 месяцев назад

Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.

CVSS3: 4.4
EPSS: Низкий
nvd логотип

CVE-2023-31356

10 месяцев назад

Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.

CVSS3: 4.4
EPSS: Низкий
debian логотип

CVE-2023-31356

10 месяцев назад

Incomplete system memory cleanup in SEV firmware could allow a privile ...

CVSS3: 4.4
EPSS: Низкий
ubuntu логотип

CVE-2023-31315

10 месяцев назад

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-31315

10 месяцев назад

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-31315

10 месяцев назад

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2023-31315

10 месяцев назад

Improper validation in a model specific register (MSR) could allow a m ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3w7r-v4fr-r43w

10 месяцев назад

Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.

CVSS3: 4.4
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:4255-1

6 месяцев назад

Security update for kernel-firmware

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3081-1

10 месяцев назад

Security update for kernel-firmware

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2980-1

10 месяцев назад

Security update for kernel-firmware

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2024:7481

Important: linux-firmware security update

около 1 месяца назад
oracle-oval логотип
ELSA-2024-12797

ELSA-2024-12797: linux-firmware security update (MODERATE)

8 месяцев назад
ubuntu логотип
CVE-2023-20584

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

CVSS3: 5.3
0%
Низкий
10 месяцев назад
redhat логотип
CVE-2023-20584

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

CVSS3: 5.3
0%
Низкий
10 месяцев назад
nvd логотип
CVE-2023-20584

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

CVSS3: 5.3
0%
Низкий
10 месяцев назад
debian логотип
CVE-2023-20584

IOMMU improperly handles certain special address ranges with invalid d ...

CVSS3: 5.3
0%
Низкий
10 месяцев назад
github логотип
GHSA-7cfh-j5pv-fw3c

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

CVSS3: 5.3
0%
Низкий
10 месяцев назад
fstec логотип
BDU:2025-03959

Уязвимость микрокода процессоров AMD64 Microcode, связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю оказать воздействие на целостность данных

CVSS3: 5.3
0%
Низкий
10 месяцев назад
ubuntu логотип
CVE-2023-31356

Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.

CVSS3: 4.4
0%
Низкий
10 месяцев назад
redhat логотип
CVE-2023-31356

Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.

CVSS3: 4.4
0%
Низкий
10 месяцев назад
nvd логотип
CVE-2023-31356

Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.

CVSS3: 4.4
0%
Низкий
10 месяцев назад
debian логотип
CVE-2023-31356

Incomplete system memory cleanup in SEV firmware could allow a privile ...

CVSS3: 4.4
0%
Низкий
10 месяцев назад
ubuntu логотип
CVE-2023-31315

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

CVSS3: 7.5
0%
Низкий
10 месяцев назад
redhat логотип
CVE-2023-31315

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

CVSS3: 7.5
0%
Низкий
10 месяцев назад
nvd логотип
CVE-2023-31315

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

CVSS3: 7.5
0%
Низкий
10 месяцев назад
debian логотип
CVE-2023-31315

Improper validation in a model specific register (MSR) could allow a m ...

CVSS3: 7.5
0%
Низкий
10 месяцев назад
github логотип
GHSA-3w7r-v4fr-r43w

Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.

CVSS3: 4.4
0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:4255-1

Security update for kernel-firmware

0%
Низкий
6 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3081-1

Security update for kernel-firmware

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2980-1

Security update for kernel-firmware

0%
Низкий
10 месяцев назад

Уязвимостей на страницу