CNNVD-202602-1448 Information

CNNVD ID

CNNVD-202602-1448

CVE-2024-21953

  • CNNVD Published: 2026-02-10

Description (Chinese)

AMD EPYC等都是美国超威半导体(AMD)公司的产品。AMD EPYC是一款高性能服务器处理器。Amd Epyc™ Embedded Processors是一款嵌入式处理器。AMD EPYC Processor是一系列多核处理器。 AMD多款产品存在安全漏洞,该漏洞源于输入验证不当,可能导致恶意虚拟机监控程序重新配置IOMMU寄存器,进而造成客户机数据完整性丢失。以下产品受到影响:AMD EPYC™ 9004 Series Processors、AMD EPYC™ 8004 Series Processors、AMD EPYC™ Embedded 9004 Series Processors。

Description (English)

All U.S. Supermassive Semiconductor (AMD) products. AMD EPYC is a high-performance server processor. Amd EpycTM Embeded Products is an embedded processor. AMD EPYC Processor is a series of polynuclear processors. There is a safety loophole in the AMD multi-products, which stems from inadequate input validation, which could lead to the reconfiguration of the IOMMU repository by the malicious virtual monitor, thereby leading to the loss of the integrity of the client machine data. The following products were affected: AMD EPYCTM 904 Series Products, AMD EPYCTM 804 Series Products, AMD EPYCTM Embed 904 Series Products.

Vulnerability Type

其他

Affected Vendor

超微半导体

Published

2026-02-10

Last Modified

2026-02-24

References

https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-3023.html https://www.amd.com/en/resources/product-security/bulletin/Emb-Auto.html

Patch

https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-3023.html

Share on: