CVE-2025-61972
HIGH
8,5
Source: [email protected]
Attack Vector: local
Attack Complexity: high
Privileges Required: high
User Interaction: none
Confidentiality: N/A
Integrity: N/A
Availability: N/A
Description
AI Translation Available
Missing lock bit protection for NBIO registers could allow a local admin-privileged attacker to gain arbitrary System Management Network (SMN) access, potentially resulting in arbitrary code execution in AMD Secure Processor (ASP) and loss of the SEV-SNP guest's confidentiality and integrity.
1233
Security-Sensitive Hardware Controls with Missing Lock Bit Protection
StableCommon Consequences
Security Scopes Affected:
Access Control
Potential Impacts:
Modify Memory
Applicable Platforms
All platforms may be affected
https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-3030.html