Improper signature verification in AMD CPU ROM microcode patch loader
may allow an attacker with local administrator privilege to load
malicious CPU microcode resulting in loss of confidentiality and
integrity of a confidential guest running under AMD SEV-SNP.
(CVE-2024-56161)
- https://bugs.mageia.org/show_bug.cgi?id=34149
- https://lists.debian.org/debian-lts-announce/2025/03/msg00024.html
- https://www.cve.org/CVERecord?id=CVE-2024-56161
- 9/nonfree/microcode-0.20250211-2.mga9.nonfree
Get the latest Linux and open source security news straight to your inbox.