CVE-2023-20582: AMD Epyc 9004 Processors

Medium severity, CVSS 5.3. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper handling of invalid nested page table entries in the IOMMU may allow a privileged attacker to induce page table entry (PTE) faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest memory integrity.

Affected products

  • AMD AMD Epyc 9004 Processors
  • AMD AMD Epyc Embedded 9004

Published 2025-02-11. Last modified 2026-06-17.