Lucene search

K
redhatcveRedhat.comRH:CVE-2024-25742
HistoryApr 08, 2024 - 10:51 a.m.

CVE-2024-25742

2024-04-0810:51:32
redhat.com
access.redhat.com
27
amd sev-snp
vulnerability
confidentiality
integrity
linux guests
interrupts
hypervisor
eax
sev vm

5.8 Medium

AI Score

Confidence

Low

A vulnerability was found in AMD SEV-SNP, where a malicious hypervisor can potentially break confidentiality and integrity of SEV-SNP on Linux guests by injecting interrupts. An attacker can inject interrupt 0x80, which is used by Linux for legacy 32-bit system calls, and arbitrarily change the value stored in EAX while a SEV VM is running.