CVE-2023-20584

EUVD-2023-24763
IOMMU improperly handles certain special address
ranges with invalid device table entries (DTEs), which may allow an attacker
with privileges and a compromised Hypervisor to
induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a
loss of guest integrity.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.3 MEDIUM
LOCAL
HIGH
HIGH
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:H/A:N
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 2%
Debian logo
Debian Releases
Debian Product
Codename
amd64-microcode
bookworm/non-free-firmware
3.20240820.1~deb12u1
fixed
bookworm/non-free-firmware (security)
vulnerable
bullseye/non-free
3.20240820.1~deb11u1
fixed
bullseye/non-free (security)
vulnerable
sid/non-free-firmware
3.20240820.1
fixed
trixie/non-free-firmware
3.20240820.1
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
iwl100-firmware
RHEL 8
0:39.31.5.1-124.el8_10.1
fixed
RHEL 8.6 AUS
0:39.31.5.1-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:39.31.5.1-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:39.31.5.1-114.3.el8_6.1
fixed
RHEL 9
0:39.31.5.1-143.3.el9_4
fixed
iwl1000-firmware
RHEL 8
1:39.31.5.1-124.el8_10.1
fixed
RHEL 8.6 AUS
1:39.31.5.1-114.3.el8_6.1
fixed
RHEL 8.6 E4S
1:39.31.5.1-114.3.el8_6.1
fixed
RHEL 8.6 TUS
1:39.31.5.1-114.3.el8_6.1
fixed
RHEL 9
1:39.31.5.1-143.3.el9_4
fixed
iwl105-firmware
RHEL 8
0:18.168.6.1-124.el8_10.1
fixed
RHEL 8.6 AUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 9
0:18.168.6.1-143.3.el9_4
fixed
iwl135-firmware
RHEL 8
0:18.168.6.1-124.el8_10.1
fixed
RHEL 8.6 AUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 9
0:18.168.6.1-143.3.el9_4
fixed
iwl2000-firmware
RHEL 8
0:18.168.6.1-124.el8_10.1
fixed
RHEL 8.6 AUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 9
0:18.168.6.1-143.3.el9_4
fixed
iwl2030-firmware
RHEL 8
0:18.168.6.1-124.el8_10.1
fixed
RHEL 8.6 AUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 9
0:18.168.6.1-143.3.el9_4
fixed
iwl3160-firmware
RHEL 8
1:25.30.13.0-124.el8_10.1
fixed
RHEL 8.6 AUS
1:25.30.13.0-114.3.el8_6.1
fixed
RHEL 8.6 E4S
1:25.30.13.0-114.3.el8_6.1
fixed
RHEL 8.6 TUS
1:25.30.13.0-114.3.el8_6.1
fixed
RHEL 9
1:25.30.13.0-143.3.el9_4
fixed
iwl3945-firmware
RHEL 8
0:15.32.2.9-124.el8_10.1
fixed
RHEL 8.6 AUS
0:15.32.2.9-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:15.32.2.9-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:15.32.2.9-114.3.el8_6.1
fixed
iwl4965-firmware
RHEL 8
0:228.61.2.24-124.el8_10.1
fixed
RHEL 8.6 AUS
0:228.61.2.24-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:228.61.2.24-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:228.61.2.24-114.3.el8_6.1
fixed
iwl5000-firmware
RHEL 8
0:8.83.5.1_1-124.el8_10.1
fixed
RHEL 8.6 AUS
0:8.83.5.1_1-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:8.83.5.1_1-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:8.83.5.1_1-114.3.el8_6.1
fixed
RHEL 9
0:8.83.5.1_1-143.3.el9_4
fixed
iwl5150-firmware
RHEL 8
0:8.24.2.2-124.el8_10.1
fixed
RHEL 8.6 AUS
0:8.24.2.2-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:8.24.2.2-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:8.24.2.2-114.3.el8_6.1
fixed
RHEL 9
0:8.24.2.2-143.3.el9_4
fixed
iwl6000-firmware
RHEL 8
0:9.221.4.1-124.el8_10.1
fixed
RHEL 8.6 AUS
0:9.221.4.1-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:9.221.4.1-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:9.221.4.1-114.3.el8_6.1
fixed
iwl6000g2a-firmware
RHEL 8
0:18.168.6.1-124.el8_10.1
fixed
RHEL 8.6 AUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 9
0:18.168.6.1-143.3.el9_4
fixed
iwl6000g2b-firmware
RHEL 8
0:18.168.6.1-124.el8_10.1
fixed
RHEL 8.6 AUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:18.168.6.1-114.3.el8_6.1
fixed
RHEL 9
0:18.168.6.1-143.3.el9_4
fixed
iwl6050-firmware
RHEL 8
0:41.28.5.1-124.el8_10.1
fixed
RHEL 8.6 AUS
0:41.28.5.1-114.3.el8_6.1
fixed
RHEL 8.6 E4S
0:41.28.5.1-114.3.el8_6.1
fixed
RHEL 8.6 TUS
0:41.28.5.1-114.3.el8_6.1
fixed
RHEL 9
0:41.28.5.1-143.3.el9_4
fixed
iwl7260-firmware
RHEL 8
1:25.30.13.0-124.el8_10.1
fixed
RHEL 8.6 AUS
1:25.30.13.0-114.3.el8_6.1
fixed
RHEL 8.6 E4S
1:25.30.13.0-114.3.el8_6.1
fixed
RHEL 8.6 TUS
1:25.30.13.0-114.3.el8_6.1
fixed
RHEL 9
1:25.30.13.0-143.3.el9_4
fixed
libertas-sd8686-firmware
RHEL 8
0:20240827-124.git3cff7109.el8_10
fixed
RHEL 8.6 AUS
0:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 8.6 E4S
0:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 8.6 TUS
0:20240827-114.3.git3cff7109.el8_6
fixed
libertas-sd8787-firmware
RHEL 8
0:20240827-124.git3cff7109.el8_10
fixed
RHEL 8.6 AUS
0:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 8.6 E4S
0:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 8.6 TUS
0:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 9
0:20240905-143.3.el9_4
fixed
libertas-usb8388-firmware
RHEL 8
2:20240827-124.git3cff7109.el8_10
fixed
RHEL 8.6 AUS
2:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 8.6 E4S
2:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 8.6 TUS
2:20240827-114.3.git3cff7109.el8_6
fixed
libertas-usb8388-olpc-firmware
RHEL 8
0:20240827-124.git3cff7109.el8_10
fixed
RHEL 8.6 AUS
0:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 8.6 E4S
0:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 8.6 TUS
0:20240827-114.3.git3cff7109.el8_6
fixed
linux-firmware
RHEL 8
0:20240827-124.git3cff7109.el8_10
fixed
RHEL 8.6 AUS
0:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 8.6 E4S
0:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 8.6 TUS
0:20240827-114.3.git3cff7109.el8_6
fixed
RHEL 9
0:20240905-143.3.el9_4
fixed
linux-firmware-whence
RHEL 9
0:20240905-143.3.el9_4
fixed
netronome-firmware
RHEL 9
0:20240905-143.3.el9_4
fixed