AMD SEV-SNP Vulnerability Allows Malicious Microcode Injection with Admin Access [email protected] (The Hacker News)

A security vulnerability has been disclosed in AMD’s Secure Encrypted Virtualization (SEV) that could permit an attacker to load a malicious CPU microcode under specific conditions.
The flaw, tracked as CVE-2024-56161, carries a CVSS score of 7.2 out of 10.0, indicating high severity.
“Improper signature verification in AMD CPU ROM microcode patch loader may allow an attacker with localRead More 


Posted

in

by

Tags: