vulnerability

Debian: CVE-2023-20584: amd64-microcode -- security update

Severity
4
CVSS
(AV:L/AC:M/Au:M/C:N/I:C/A:N)
Published
Aug 13, 2024
Added
Sep 2, 2024
Modified
Jul 28, 2025

Description

IOMMU improperly handles certain special address
ranges with invalid device table entries (DTEs), which may allow an attacker
with privileges and a compromised Hypervisor to
induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a
loss of guest integrity.

Solution

debian-upgrade-amd64-microcode
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.