CacheWarp Exploits AMD SEV, Jeopardizing Virtual Machine Security

By | 2023-11-17

A recently discovered software-based fault injection attack named CacheWarp poses a threat to AMD SEV-protected virtual machines, potentially allowing unauthorized access, privilege escalation, and remote code execution.

Exploiting vulnerabilities in AMD’s SEV-ES and SEV-SNP technologies, designed to secure virtual machines against malicious hypervisors, CacheWarp manipulates memory writes to compromise VM integrity. Researchers from CISPA Helmholtz Center for Information Security and Graz University of Technology, along with independent researcher Youheng Lue, unveiled this security flaw (CVE-2023-20592). The attack’s implications include compromising RSA keys, unauthorized access to OpenSSH servers, and privilege escalation to root via the sudo binary. AMD has issued a security advisory, acknowledging the issue’s impact on SEV-ES and SEV-SNP guest VM memory integrity in certain processors.

While no mitigation is available for earlier EPYC processors, a hot-loadable microcode patch and firmware update have been released for 3rd generation EPYC processors with SEV-SNP enabled.

Author: dwirch

Derek Wirch is a seasoned IT professional with an impressive career dating back to 1986. He brings a wealth of knowledge and hands-on experience that is invaluable to those embarking on their journey in the tech industry.

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.