cbcvebase.
CVE-2022-23813
published 2023-01-11

CVE-2022-23813: The software interfaces to ASP and SMU may not enforce the SNP memory security policy resulting in a potential loss of integrity of guest memory in a…

medium5.3CVSS 3.1
AVNACLPRNUINSUCNILAN
The software interfaces to ASP and SMU may not enforce the SNP memory security policy resulting in a potential loss of integrity of guest memory in a confidential compute environment.

Affected

4 ranges
VendorProductVersion rangeFixed in
amd2nd_gen_epyc
amd3rd_gen_epyc
amdmilanpi-sp3_firmware< 1.0.0.91.0.0.9
amdromepi_firmware< 1.0.0.e1.0.0.e