Lucene search

K
redhatcveRedhat.comRH:CVE-2024-25743
HistoryApr 08, 2024 - 10:51 a.m.

CVE-2024-25743

2024-04-0810:51:44
redhat.com
access.redhat.com
29
amd
sev-snp
vulnerability
linux
guests
hypervisor
confidentiality
integrity
interrupts
32-bit
system calls

5.9 Medium

AI Score

Confidence

Low

A vulnerability was found in AMD SEV-SNP, where a malicious hypervisor can potentially break confidentiality and integrity of SEV-SNP on Linux guests by injecting interrupts. An attacker can inject interrupt 0x80, which is used by Linux for legacy 32-bit system calls, and arbitrarily change the value stored in EAX while a SEV VM is running.