Database/Firmware, BMC & network fabric
AMD processors - power reporting side channel against SEV VMs: An authenticated attacker uses the platform's power
Impact
An authenticated attacker uses the platform's power reporting functionality to monitor execution inside an AMD SEV VM. The whole promise of SEV is that the host cannot see what the confidential guest is doing; power telemetry is a channel the memory encryption does not cover, so a host operator watches the guest's execution profile through the power meter. For anyone selling confidential computing on EPYC this is a direct hole in the product claim.
Who can reach it
Local, authenticated, with access to power reporting interfaces on a host running SEV guests.
What to do
Mitigated by restricting access to power reporting interfaces and by AGESA-level changes to reduce telemetry resolution. Mitigated by AMD microcode plus, on most of these, a kernel-side change - and the durable delivery vehicle is the OEM SBIOS/AGESA package, which carries **one to six months of OEM lag** and needs a drained node and a full power cycle. The linux-firmware amd-ucode blobs get you the microcode sooner via initramfs early-load and a reboot, but AMD does not support late-loading microcode on a running EPYC host, so either way this is reboot-required, not a live patch. The immediately actionable step is to lock down who can read host power telemetry on confidential-computing nodes - that is a permissions change, not a maintenance window.
References
Related entries
- Intel Ethernet Controller E810 Series firmware: A race condition in E810 firmware lets an authenticated local userCVE-2023-22276 · Intel Ethernet Controller E810 Series firmwareMedium
- Intel E810 Ethernet Controller firmware: Out-of-bounds read in E810 firmware reachable from an adjacentCVE-2023-28376 · Intel E810 Ethernet Controller firmwareMedium
- Intel processors (register file data sampling): RFDS: stale data left in the integer, floating-point and vectorCVE-2023-28746 · Intel processors (register file data sampling)Medium
- AMI MegaRAC SPx (SPX REST API): Path traversal in the BMC REST API letting a low-privilege user read arbitrary filesCVE-2023-34345 · AMI MegaRAC SPx (SPX REST API)Medium
- Supermicro BMC (IPMI web interface, XSS): Another injection point in the BMC web interface, lower-impact thanCVE-2023-40285 · Supermicro BMC (IPMI web interface, XSS)Medium
- EDK II NetworkPkg (DHCPv6 Advertise, IA_NA/IA_TA option parsing): An integer underflow when parsingCVE-2023-45229 · EDK II NetworkPkg (DHCPv6 Advertise, IA_NA/IA_TA option parsing)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.