#VU63692 Cryptographic issues in AMD products - CVE-2021-46744
Published: May 26, 2022
1st Gen AMD EPYC Processors
2nd Gen AMD EPYC Processors
3rd Gen AMD EPYC Processors
AMD EPYC Embedded Processors
AMD
Description
The vulnerability allows a local user to gain access to sensitive information.
The vulnerability exists due to a ciphertext side channel attack where data in specific cryptographic algorithms can be inferred in a SEV guest by monitoring the ciphertext values over time. A local user with access to the hypervisor can gain access to sensitive information, related to the guest OS.