CVE-2023-20584
published 2024-08-13CVE-2023-20584: IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised…
PriorityP424medium6CVSS 3.1
AVLACLPRHUINSCCNIHAN
EPSS
0.17%
7.1th percentile
IOMMU improperly handles certain special address
ranges with invalid device table entries (DTEs), which may allow an attacker
with privileges and a compromised Hypervisor to
induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a
loss of guest integrity.
Affected
66 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| amd | epyc_7203_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7203p_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_72f3_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7303_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7303p_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7313_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7313p_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7343_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7373x_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_73f3_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7413_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7443_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7443p_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7453_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7473x_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_74f3_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7513_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7543_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7543p_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7573x_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_75f3_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7643_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7643p_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7663_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
| amd | epyc_7663p_firmware | < milanpi_1.0.0.b | milanpi_1.0.0.b |
CVSS provenance
nvdv3.16.0MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:N
osv6.0MEDIUM
vendor_debian5.3MEDIUM
vendor_redhat5.3MEDIUM
vendor_ubuntu5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
AMD Microcode vulnerabilities
vendor_ubuntu·2025-06-09·CVSS 5.3
CVE-2023-20584 [MEDIUM] AMD Microcode vulnerabilities
Title: AMD Microcode vulnerabilities
Summary: Several security issues were fixed in AMD Microcode.
It was discovered that AMD Microcode incorrectly handled memory addresses.
An attacker with local administrator privilege could possibly use this
issue to cause loss of integrity of a confidential guest running under AMD
SEV-SNP. (CVE-2023-20584, CVE-2023-31356)
Josh Eads, Kristoffer Janke, Eduardo Nava, Tavis Ormandy and Matteo Rizzo
discovered that AMD Microcode incorrectly verified signatures. An attacker
with local administrator privilege could possibly use this issue to cause
loss of confidentiality and integrity of a confidential guest running under
AMD SEV-SNP. (CVE-2024-56161)
Instructions: After a standard system update you need to reboot your computer to make
all the necessary c
Red Hat
kernel: hw:amd:IOMMU improperly handles certain special address leading to a loss of guest integrity
vendor_redhat·2024-08-13·CVSS 5.3
CVE-2023-20584 [MEDIUM] kernel: hw:amd:IOMMU improperly handles certain special address leading to a loss of guest integrity
kernel: hw:amd:IOMMU improperly handles certain special address leading to a loss of guest integrity
IOMMU improperly handles certain special address
ranges with invalid device table entries (DTEs), which may allow an attacker
with privileges and a compromised Hypervisor to
induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a
loss of guest integrity.
A flaw was found in the way AMD IOMMU handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.
Mitigation: Red Hat has investigated whether a possible mitigation exists for this issue, and has not been able to identify a
Debian
CVE-2023-20584: amd64-microcode - IOMMU improperly handles certain special address ranges with invalid device tabl...
vendor_debian·2023·CVSS 5.3
CVE-2023-20584 [MEDIUM] CVE-2023-20584: amd64-microcode - IOMMU improperly handles certain special address ranges with invalid device tabl...
IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.
Scope: local
bookworm: resolved (fixed in 3.20240820.1~deb12u1)
bullseye: resolved (fixed in 3.20240820.1~deb11u1)
forky: resolved (fixed in 3.20240820.1)
sid: resolved (fixed in 3.20240820.1)
trixie: resolved (fixed in 3.20240820.1)
OSV
amd64-microcode vulnerabilities
osv·2025-06-09·CVSS 6.0
CVE-2023-20584 [MEDIUM] amd64-microcode vulnerabilities
amd64-microcode vulnerabilities
It was discovered that AMD Microcode incorrectly handled memory addresses.
An attacker with local administrator privilege could possibly use this
issue to cause loss of integrity of a confidential guest running under AMD
SEV-SNP. (CVE-2023-20584, CVE-2023-31356)
Josh Eads, Kristoffer Janke, Eduardo Nava, Tavis Ormandy and Matteo Rizzo
discovered that AMD Microcode incorrectly verified signatures. An attacker
with local administrator privilege could possibly use this issue to cause
loss of confidentiality and integrity of a confidential guest running under
AMD SEV-SNP. (CVE-2024-56161)
GHSA
GHSA-7cfh-j5pv-fw3c: IOMMU improperly handles certain special address
ranges with invalid device table entries (DTEs), which may allow an attacker
with privileges and a co
ghsa_unreviewed·2024-08-13
CVE-2023-20584 [MEDIUM] GHSA-7cfh-j5pv-fw3c: IOMMU improperly handles certain special address
ranges with invalid device table entries (DTEs), which may allow an attacker
with privileges and a co
IOMMU improperly handles certain special address
ranges with invalid device table entries (DTEs), which may allow an attacker
with privileges and a compromised Hypervisor to
induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a
loss of guest integrity.
OSV
CVE-2023-20584: IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a co
osv·2024-08-13·CVSS 6.0
CVE-2023-20584 [MEDIUM] CVE-2023-20584: IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a co
IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-08-13
Published