First published: Mon Aug 05 2024(Updated: )
Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to overwrite a guest's UMC seed potentially allowing reading of memory from a decommissioned guest.
Credit: psirt@amd.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
AMD EPYC 7203 Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7203 Firmware | ||
All of | ||
AMD EPYC Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7203P Firmware | ||
All of | ||
AMD EPYC 72F3 Firmware | <milanpi_1.0.0.d | |
AMD EPYC 72F3 Firmware | ||
All of | ||
AMD EPYC 7303 Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7303 Firmware | ||
All of | ||
AMD EPYC 7303P Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7303P | ||
All of | ||
AMD EPYC Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7313 Firmware | ||
All of | ||
AMD EPYC 7313P Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7313P Firmware | ||
All of | ||
Amd Epyc Server Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7343 Firmware | ||
All of | ||
AMD EPYC 73F3 Firmware | <milanpi_1.0.0.d | |
AMD EPYC 73F3 Firmware | ||
All of | ||
AMD EPYC 7373X Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7373X Firmware | ||
All of | ||
AMD EPYC 7413 Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7413 Firmware | ||
All of | ||
AMD EPYC 7443P Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7443P | ||
All of | ||
AMD EPYC 7443P Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7443P Firmware | ||
All of | ||
AMD EPYC 74F3 Firmware | <milanpi_1.0.0.d | |
AMD EPYC 74F3 Firmware | ||
All of | ||
Amd Epyc Server Firmware | <milanpi_1.0.0.d | |
AMD EPYC Server | ||
All of | ||
AMD EPYC 7473X Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7473X Firmware | ||
All of | ||
AMD EPYC 7513 Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7513 Firmware | ||
All of | ||
Amd Epyc Server Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7543 Firmware | ||
All of | ||
AMD EPYC 7543P Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7543P Firmware | ||
All of | ||
AMD EPYC 75F3 Firmware | <milanpi_1.0.0.d | |
AMD EPYC 75F3 Firmware | ||
All of | ||
AMD EPYC 7573X Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7573X Firmware | ||
All of | ||
AMD EPYC 7643P Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7643 Firmware | ||
All of | ||
AMD EPYC 7773X Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7773X Firmware | ||
All of | ||
AMD EPYC Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7643P Firmware | ||
All of | ||
AMD EPYC 7663 Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7663 Firmware | ||
All of | ||
AMD EPYC 7663P Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7663P Firmware | ||
All of | ||
AMD EPYC 7713P Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7713 Firmware | ||
All of | ||
AMD EPYC 7713P Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7713P Firmware | ||
All of | ||
AMD EPYC 7763 Firmware | <milanpi_1.0.0.d | |
AMD EPYC 7763 Firmware | ||
All of | ||
AMD EPYC 8024PN Firmware | <genoapi_1.0.0.c | |
AMD EPYC 8024PN Firmware | ||
All of | ||
AMD EPYC 8024PN Firmware | <genoapi_1.0.0.c | |
AMD EPYC 8024PN Firmware | ||
All of | ||
AMD EPYC 8124PN | <genoapi_1.0.0.c | |
AMD EPYC 8124PN Firmware | ||
All of | ||
AMD EPYC Firmware | <genoapi_1.0.0.c | |
AMD EPYC 8124P Firmware | ||
All of | ||
AMD EPYC 8224PN Firmware | <genoapi_1.0.0.c | |
AMD EPYC 8224PN Firmware | ||
All of | ||
AMD EPYC 8224PN Firmware | <genoapi_1.0.0.c | |
AMD EPYC 8224P Firmware | ||
All of | ||
AMD EPYC 8324PN Firmware | <genoapi_1.0.0.c | |
AMD EPYC 8324PN Firmware | ||
All of | ||
AMD EPYC 8324P Firmware | <genoapi_1.0.0.c | |
AMD EPYC 8324P Firmware | ||
All of | ||
AMD EPYC 8434P Firmware | <genoapi_1.0.0.c | |
AMD EPYC 8434PN Firmware | ||
All of | ||
AMD EPYC 8434P Firmware | <genoapi_1.0.0.c | |
AMD EPYC 8434P Firmware | ||
All of | ||
AMD EPYC 8534PN Firmware | <genoapi_1.0.0.c | |
AMD EPYC 8534PN Firmware | ||
All of | ||
AMD EPYC Firmware | <genoapi_1.0.0.c | |
AMD EPYC 8534P Firmware | ||
All of | ||
AMD EPYC 9734 Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9734 Firmware | ||
All of | ||
AMD EPYC 9754S Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9754S Firmware | ||
All of | ||
Amd Epyc Server Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9754 Firmware | ||
All of | ||
AMD EPYC 9184X Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9184X firmware | ||
All of | ||
AMD EPYC 9384X Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9384X Firmware | ||
All of | ||
AMD EPYC 9684X Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9684X Firmware | ||
All of | ||
AMD EPYC 9124 Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9124 Firmware | ||
All of | ||
AMD EPYC 9174F Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9174F Firmware | ||
All of | ||
AMD EPYC 9224 Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9224 | ||
All of | ||
AMD EPYC 9254 Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9254 Firmware | ||
All of | ||
AMD EPYC 9274F Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9274F Firmware | ||
All of | ||
AMD EPYC 9334 firmware | <genoapi_1.0.0.c | |
AMD EPYC 9334 firmware | ||
All of | ||
AMD EPYC 9354 Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9354P | ||
All of | ||
AMD EPYC 9354P Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9354P | ||
All of | ||
AMD EPYC 9374F Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9374F Firmware | ||
All of | ||
AMD EPYC 9454P Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9454P | ||
All of | ||
AMD EPYC 9454P Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9454P Firmware | ||
All of | ||
AMD EPYC 9474F Firmware | <genoapi_1.0.0.c | |
AMD Epyc 9474F Firmware | ||
All of | ||
AMD EPYC 9534 Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9534 Firmware | ||
All of | ||
AMD EPYC 9554P Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9554 Firmware | ||
All of | ||
AMD EPYC 9554P Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9554P | ||
All of | ||
AMD EPYC 9634 Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9634 Firmware | ||
All of | ||
AMD EPYC 9654 Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9654 firmware | ||
All of | ||
AMD EPYC 9654P Firmware | <genoapi_1.0.0.c | |
AMD EPYC 9654P Firmware | ||
All of | ||
Amd Epyc Embedded Firmware | <embmilanpi-sp3_1.0.0.9 | |
Amd Epyc Embedded 7313p | ||
All of | ||
Amd Epyc Embedded 7313p Firmware | <embmilanpi-sp3_1.0.0.9 | |
Amd Epyc Embedded 7313p Firmware | ||
All of | ||
Amd Epyc Embedded 7413 Firmware | <embmilanpi-sp3_1.0.0.9 | |
Amd Epyc Embedded 7413 Firmware | ||
All of | ||
AMD EPYC Embedded 7443 Firmware | <embmilanpi-sp3_1.0.0.9 | |
Amd Epyc Embedded 7443p | ||
All of | ||
Amd Epyc Embedded 7443p Firmware | <embmilanpi-sp3_1.0.0.9 | |
AMD Epyc Embedded 7443p | ||
All of | ||
Amd Epyc Embedded 7543 Firmware | <embmilanpi-sp3_1.0.0.9 | |
Amd Epyc Embedded 7543 Firmware | ||
All of | ||
Amd Epyc Embedded 7543p Firmware | <embmilanpi-sp3_1.0.0.9 | |
Amd Epyc Embedded 7543p Firmware | ||
All of | ||
AMD EPYC 7643P Firmware | <embmilanpi-sp3_1.0.0.9 | |
Amd Epyc Embedded 7643 | ||
All of | ||
Amd Epyc Embedded 7713 Firmware | <embmilanpi-sp3_1.0.0.9 | |
Amd Epyc Embedded 7713p | ||
All of | ||
Amd Epyc Embedded 7713p Firmware | <embmilanpi-sp3_1.0.0.9 | |
AMD Epyc Embedded 7713p | ||
All of | ||
Amd Epyc Embedded 9124 Firmware | <embgenoapi-sp5_1.0.0.7 | |
Amd Epyc Embedded 9124 Firmware | ||
All of | ||
Amd Epyc Embedded 9254 Firmware | <embgenoapi-sp5_1.0.0.7 | |
Amd Epyc Embedded 9254 Firmware | ||
All of | ||
Amd Epyc Embedded 9354p Firmware | <embgenoapi-sp5_1.0.0.7 | |
AMD EPYC Embedded 9354P | ||
All of | ||
Amd Epyc Embedded 9354p Firmware | <embgenoapi-sp5_1.0.0.7 | |
AMD EPYC 9354P | ||
All of | ||
Amd Epyc Embedded 9454 Firmware | <embgenoapi-sp5_1.0.0.7 | |
AMD Epyc Embedded 9454 | ||
All of | ||
Amd Epyc Embedded 9454p Firmware | <embgenoapi-sp5_1.0.0.7 | |
Amd Epyc Embedded 9454p Firmware | ||
All of | ||
Amd Epyc Embedded 9534 Firmware | <embgenoapi-sp5_1.0.0.7 | |
Amd Epyc Embedded 9534 Firmware | ||
All of | ||
Amd Epyc Embedded 9554 Firmware | <embgenoapi-sp5_1.0.0.7 | |
Amd Epyc Embedded 9554 Firmware | ||
All of | ||
AMD EPYC Embedded 9554P Firmware | <embgenoapi-sp5_1.0.0.7 | |
Amd Epyc Embedded 9554p Firmware | ||
All of | ||
Amd Epyc Embedded 9654 Firmware | <embgenoapi-sp5_1.0.0.7 | |
Amd Epyc Embedded 9654 Firmware | ||
All of | ||
Amd Epyc Embedded 9654p Firmware | <embgenoapi-sp5_1.0.0.7 | |
Amd Epyc Embedded 9654p Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-31355 is classified as a critical severity vulnerability due to its potential to allow unauthorized memory access.
To mitigate CVE-2023-31355, update the affected AMD EPYC firmware to the latest version released by AMD.
CVE-2023-31355 affects various versions of AMD EPYC firmware across multiple models, including the EPYC 7203, 7303, and other recent variants.
Yes, CVE-2023-31355 can potentially be exploited remotely by a malicious hypervisor.
Currently, the recommended action for CVE-2023-31355 is to apply the firmware update as there are no confirmed workarounds.