Medium severityNVD Advisory· Published Feb 10, 2026· Updated Apr 15, 2026
CVE-2025-48514
CVE-2025-48514
Description
Insufficient Granularity of Access Control in SEV firmware can allow a privileged attacker to create a SEV-ES Guest to attack SNP guest, potentially resulting in a loss of confidentiality.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.