CVE-2025-29939
Severity CVSS v4.0:
MEDIUM
Type:
CWE-284
Improper Access Control
Publication date:
10/02/2026
Last modified:
10/02/2026
Description
Improper access control in secure encrypted virtualization (SEV) could allow a privileged attacker to write to the reverse map page (RMP) during secure nested paging (SNP) initialization, potentially resulting in a loss of guest memory confidentiality and integrity.
Impact
Base Score 4.0
6.90
Severity 4.0
MEDIUM



