Security Advisory

CVE-2025-61972

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-13 03:03:31
Last updated 2026-05-14 03:56:03
Assigner AMD
CVSS score 8.5
State PUBLISHED

Description

Missing lock bit protection for NBIO registers could allow a local admin-privileged attacker to gain arbitrary System Management Network (SMN) access, potentially resulting in arbitrary code execution in AMD Secure Processor (ASP) and loss of the SEV-SNP guest's confidentiality and integrity.