Analysis and contextual insights are available on OpenCVE Cloud.
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Ubuntu USN |
USN-8887-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-8888-1 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-8889-1 | Linux kernel (OEM) vulnerabilities |
Mon, 20 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Amd
Amd epyc 7003 Series Processors Amd epyc 9004 Series Processors Amd epyc Embedded 7003 Series Processors Amd epyc Embedded 9004 Series Processors |
|
| Vendors & Products |
Amd
Amd epyc 7003 Series Processors Amd epyc 9004 Series Processors Amd epyc Embedded 7003 Series Processors Amd epyc Embedded 9004 Series Processors |
Fri, 17 Apr 2026 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Insufficient RMP Checks in IOMMU Allow Host Buffer Out‑of‑Bounds Access |
Thu, 16 Apr 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insuffient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised HV to trigger an out of bounds condition without RMP checks resulting in a potential loss of confidential guest integrity. | Insufficient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised hypervisor to trigger an out of bounds condition without RMP checks, resulting in a potential loss of confidential guest integrity. |
Thu, 16 Apr 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 16 Apr 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insuffient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised HV to trigger an out of bounds condition without RMP checks resulting in a potential loss of confidential guest integrity. | |
| Weaknesses | CWE-788 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: AMD
Published:
Updated: 2026-04-16T19:12:06.991Z
Reserved: 2022-10-27T18:53:39.759Z
Link: CVE-2023-20585
Updated: 2026-04-16T18:58:11.213Z
Status : Awaiting Analysis
Published: 2026-04-16T19:16:31.430
Modified: 2026-06-17T05:30:22.067
Link: CVE-2023-20585
No data.
OpenCVE Enrichment
Updated: 2026-04-20T15:00:09Z
-
CWE-788
Access of Memory Location After End of Buffer
Ubuntu USN