Database/Firmware, BMC & network fabric
AMD Secure Processor - hardware config integrity across power save/restore: Hardware configuration state is not
Impact
Hardware configuration state is not properly preserved across a power save/restore cycle in the ASP, so an attacker who can write outside the Trusted Memory Range can change security-relevant configuration that comes back wrong after resume. Suspend/resume is a soft spot in every confidential-computing design; here it is the ASP's own configuration that fails to survive intact.
Who can reach it
Local, requires the ability to write outside the TMR - host-privileged code - and a power-state transition to land on.
What to do
Fixed in AMD reference firmware (AGESA / SEV firmware) and delivered to you only as an OEM SBIOS/BIOS package - Dell, HPE, Supermicro, Lenovo, Gigabyte and the ODMs each rebuild and requalify AMD's AGESA drop before it ships. **Expect months, not weeks**: AMD publishes the bulletin, the OEM ships BIOS somewhere between one and six months later, and for platforms past their support window it may never arrive at all. Applying it is a full node power cycle with the host drained - not a driver reload, not a live patch. Track it as a firmware campaign per server SKU, not per kernel version, and verify afterwards by reading back the SMU/PSP firmware version rather than trusting the BIOS revision string. Because this sits inside the SEV-SNP trust boundary, the update also moves the platform's reported TCB version: after patching you must refresh VCEK certificates from AMD's KDS and update whatever attestation policy your tenants (or your own confidential-VM control plane) pin against, or every guest launch will start failing validation. Servers rarely suspend, so on a datacenter fleet the practical exposure is lower than the score suggests; still worth catching in the next BIOS wave.
References
Related entries
- AMI MegaRAC SPx (BMC TLS certificate / cryptographic keys): A hard-coded certificate and its private key ship insideCVE-2023-34338 · AMI MegaRAC SPx (BMC TLS certificate / cryptographic keys)High
- Intel TDX module: Insufficient control-flow management in the TDX module lets a privileged host user deny serviceCVE-2024-21801 · Intel TDX moduleHigh
- SEV-ES / SEV-SNP guest kernel - injection of virtual interrupts 0 and 14: An untrusted hypervisor can inject virtualCVE-2024-25743 · SEV-ES / SEV-SNP guest kernel - injection of virtual interrupts 0 and 14High
- Arista EOS and CVX: malformed CVX cluster messages crash the Sysdb agent and soft-reset the switchCVE-2025-5089 · Arista EOS / CloudVision eXchange (CVX) - Sysdb agent message handlingHigh
- Arista CVX: unexpected messages from a connected switch crash CVX agents and destabilise the clusterCVE-2025-5090 · Arista CloudVision eXchange (CVX) server - switch message handlingHigh
- Arista EOS: crafted DHCP packet restarts the DHCP relay service on client-facing VLANsCVE-2026-19655 · Arista EOS DHCP relay (Option 82 information option handling)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.