CVE-2025-61972

Published: Mag 13, 2026 Last Modified: Mag 13, 2026
ExploitDB:
Other exploit source:
Google Dorks:
HIGH 8,5
Attack Vector: local
Attack Complexity: high
Privileges Required: high
User Interaction: none
Confidentiality: N/A
Integrity: N/A
Availability: N/A

Description

AI Translation Available

Missing lock bit protection for NBIO registers could allow a local admin-privileged attacker to gain arbitrary System Management Network (SMN) access, potentially resulting in arbitrary code execution in AMD Secure Processor (ASP) and loss of the SEV-SNP guest's confidentiality and integrity.

1233

Security-Sensitive Hardware Controls with Missing Lock Bit Protection

Stable
Common Consequences
Security Scopes Affected:
Access Control
Potential Impacts:
Modify Memory
Applicable Platforms
All platforms may be affected
View CWE Details
https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-3030.html