VYPR
Medium severityNVD Advisory· Published Feb 10, 2026· Updated Apr 15, 2026

CVE-2025-48514

CVE-2025-48514

Description

Insufficient Granularity of Access Control in SEV firmware can allow a privileged attacker to create a SEV-ES Guest to attack SNP guest, potentially resulting in a loss of confidentiality.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.