Home

Description

Missing Checks in certain functions related to RMP initialization can allow a local admin privileged attacker to cause misidentification of I/O memory, potentially resulting in a loss of guest memory integrity

PUBLISHED Reserved 2025-05-22 | Published 2026-02-10 | Updated 2026-02-11 | Assigner AMD




LOW: 1.8CVSS:4.0/AV:L/AC:H/AT:N/PR:H/UI:N/VC:N/VI:N/VA:N/SC:N/SI:L/SA:N

Problem types

CWE-665 Improper Initialization

Product status

Default status
affected

GenoaPI 1.0.0.F
unaffected

Default status
affected

MilanPI 1.0.0.H
unaffected

Default status
affected

TurinPI 1.0.0.5
unaffected

Default status
affected

GenoaPI 1.0.0.F
unaffected

Default status
affected

EmbMilanPI-SP3 v9 1.0.0.C
unaffected

Default status
affected

EmbGenoaPI-SP5 1.0.0.B
unaffected

Default status
affected

EmbTurinPI-SP5_1.0.0.1
unaffected

Default status
affected

EmbGenoaPI-SP5 1.0.0.B
unaffected

Default status
affected

EmbGenoaPI-SP5 1.0.0.B
unaffected

References

www.amd.com/...es/product-security/bulletin/AMD-SB-3023.html

cve.org (CVE-2025-48509)

nvd.nist.gov (CVE-2025-48509)

Download JSON