CVE-2023-31346
MEDIUMAMD EPYC 7003 Series Firmware < milanpi_1.0.0.c - Privileged Stale Data Exposure via Uninitialized Memory
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-31346. PoCs published by Freax13.
AI-analyzed exploit summary This repository contains a proof-of-concept exploit for CVE-2023-31346, demonstrating memory leaks in guest message headers and CPUID request guest messages in SEV-SNP environments. The PoC includes host and guest components to observe leaked values under specific conditions.
Description
Failure to initialize memory in SEV Firmware may allow a privileged attacker to access stale data from other guests.
Exploits (1)
This repository contains a proof-of-concept exploit for CVE-2023-31346, demonstrating memory leaks in guest message headers and CPUID request guest messages in SEV-SNP environments. The PoC includes host and guest components to observe leaked values under specific conditions.
References (1)
Scores
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N