AMD SEV-SNP RMP initialization race condition remote code execution flaw (CVE-2025-0033)
Vulnerability
Summary
Hide ▲
Show ▼
CVE-2025-0033 exposes a race condition in AMD SEV-SNP RMP initialization that can let a malicious hypervisor corrupt protected memory mappings and break guest confidentiality and integrity. The flaw affects EPYC and EPYC Embedded processors, with testing on Zen 3, Zen 4, and Zen 5 systems showing the attack can overwrite pages during setup. AMD sent patches to OEMs for BIOS updates, and Microsoft is updating Azure Confidential Computing AMD-based clusters.
Related Happenings
GPUBreach GPU Rowhammer research enables GDDR6 page-table corruption and privilege escalation
Technical Analysis
First: 07.04.2026 00:44
Last: 07.04.2026 00:44
Sources 1
About this happening:
**GPUBreach** research shows **Rowhammer** bit flips in **GDDR6** can corrupt **GPU page tables**, creating a path to **arbitrary GPU memory read/write** and potential **full syst...
GPUBreach GPU Rowhammer research enables GDDR6 page-table corruption and privilege escalation
Technical AnalysisAbout this happening: **GPUBreach** research shows **Rowhammer** bit flips in **GDDR6** can corrupt **GPU page tables**, creating a path to **arbitrary GPU memory read/write** and potential **full syst...
Microsoft BitLocker hardware-accelerated rollout in Windows 11
Security Tool/Service
First: 23.12.2025 22:03
Last: 23.12.2025 22:03
Sources 1
About this happening:
Microsoft is rolling out **hardware-accelerated BitLocker** in **Windows 11**, improving **encryption performance** and **key protection** on supported devices. The new mode offlo...
Microsoft BitLocker hardware-accelerated rollout in Windows 11
Security Tool/ServiceAbout this happening: Microsoft is rolling out **hardware-accelerated BitLocker** in **Windows 11**, improving **encryption performance** and **key protection** on supported devices. The new mode offlo...
Battering RAM interposer attack breaks Intel SGX and AMD SEV-SNP confidential computing
Technical Analysis
First: 01.10.2025 17:54
Last: 01.10.2025 17:54
Sources 1
About this happening:
Researchers demonstrated **Battering RAM**, a **$50** interposer attack that can bypass **Intel SGX** and **AMD SEV-SNP**, undermining confidential-computing protections for cloud...
Battering RAM interposer attack breaks Intel SGX and AMD SEV-SNP confidential computing
Technical AnalysisAbout this happening: Researchers demonstrated **Battering RAM**, a **$50** interposer attack that can bypass **Intel SGX** and **AMD SEV-SNP**, undermining confidential-computing protections for cloud...
Timeline
-
14.10.2025 13:52 2 articles · 7mo ago
AMD and Microsoft begin fixes for CVE-2025-0033
Mitigation Patch UpdateAMD said its EPYC and EPYC Embedded series processors are affected by CVE-2025-0033 and sent patches to OEMs for BIOS updates, while Microsoft said it has been working on updates for Azure Confidential Computing AMD-based clusters and will notify customers if resource reboots are required.
Show sources
- RMPocalypse: New Attack Breaks AMD Confidential Computing — www.securityweek.com — 14.10.2025 13:52
- RMPocalypse: Single 8-Byte Write Shatters AMD’s SEV-SNP Confidential Computing — thehackernews.com — 14.10.2025 14:45
-
14.10.2025 13:52 2 articles · 7mo ago
ETH Zurich identifies RMPocalypse in AMD SEV-SNP memory management
Initial DisclosureETH Zurich researchers identified CVE-2025-0033 in AMD Secure Processor (ASP) and SEV-SNP memory management, describing a race condition during Reverse Map Table (RMP) initialization that lets a malicious hypervisor corrupt RMP entries and compromise confidential VM integrity and confidentiality.
Show sources
- RMPocalypse: New Attack Breaks AMD Confidential Computing — www.securityweek.com — 14.10.2025 13:52
- RMPocalypse: Single 8-Byte Write Shatters AMD’s SEV-SNP Confidential Computing — thehackernews.com — 14.10.2025 14:45
-
14.10.2025 13:52 2 articles · 7mo ago
ETH Zurich identifies RMPocalypse in AMD SEV-SNP memory management
Initial DisclosureETH Zurich researchers identified CVE-2025-0033 in AMD Secure Processor (ASP) and SEV-SNP memory management, describing a race condition during Reverse Map Table (RMP) initialization that lets a malicious hypervisor corrupt RMP entries and compromise confidential VM integrity and confidentiality.
Show sources
- RMPocalypse: New Attack Breaks AMD Confidential Computing — www.securityweek.com — 14.10.2025 13:52
- RMPocalypse: Single 8-Byte Write Shatters AMD’s SEV-SNP Confidential Computing — thehackernews.com — 14.10.2025 14:45