AMD SEV-SNP RMP initialization race condition remote code execution flaw (CVE-2025-0033)
Vulnerability
Summary
Hide ▲
Show ▼
CVE-2025-0033 exposes a race condition in AMD SEV-SNP RMP initialization that can let a malicious hypervisor corrupt protected memory mappings and break guest confidentiality and integrity. The flaw affects EPYC and EPYC Embedded processors, with testing on Zen 3, Zen 4, and Zen 5 systems showing the attack can overwrite pages during setup. AMD sent patches to OEMs for BIOS updates, and Microsoft is updating Azure Confidential Computing AMD-based clusters.
Related Happenings
GPUBreach GPU Rowhammer research enables GDDR6 page-table corruption and privilege escalation
Technical Analysis
H score26
First: 07.04.2026 00:44
Last: 07.04.2026 00:44
Sources 1
About this happening:
GPUBreach research shows Rowhammer bit flips in GDDR6 can corrupt GPU page tables, creating a path to arbitrary GPU memory read/write and potential full syst...
GPUBreach GPU Rowhammer research enables GDDR6 page-table corruption and privilege escalation
Technical AnalysisAbout this happening: GPUBreach research shows Rowhammer bit flips in GDDR6 can corrupt GPU page tables, creating a path to arbitrary GPU memory read/write and potential full syst...
Microsoft BitLocker hardware-accelerated rollout in Windows 11
Security Tool/Service
H score11
First: 23.12.2025 22:03
Last: 23.12.2025 22:03
Sources 1
About this happening:
Microsoft is rolling out hardware-accelerated BitLocker in Windows 11, improving encryption performance and key protection on supported devices. The new mode offlo...
Microsoft BitLocker hardware-accelerated rollout in Windows 11
Security Tool/ServiceAbout this happening: Microsoft is rolling out hardware-accelerated BitLocker in Windows 11, improving encryption performance and key protection on supported devices. The new mode offlo...
Battering RAM interposer attack breaks Intel SGX and AMD SEV-SNP confidential computing
Technical Analysis
H score23
First: 01.10.2025 17:54
Last: 01.10.2025 17:54
Sources 1
About this happening:
Researchers demonstrated Battering RAM, a $50 interposer attack that can bypass Intel SGX and AMD SEV-SNP, undermining confidential-computing protections for cloud...
Battering RAM interposer attack breaks Intel SGX and AMD SEV-SNP confidential computing
Technical AnalysisAbout this happening: Researchers demonstrated Battering RAM, a $50 interposer attack that can bypass Intel SGX and AMD SEV-SNP, undermining confidential-computing protections for cloud...
Timeline
-
14.10.2025 13:52 2 articles · 9mo ago
AMD and Microsoft begin fixes for CVE-2025-0033
Mitigation Patch UpdateAMD said its EPYC and EPYC Embedded series processors are affected by CVE-2025-0033 and sent patches to OEMs for BIOS updates, while Microsoft said it has been working on updates for Azure Confidential Computing AMD-based clusters and will notify customers if resource reboots are required.
Show sources
- RMPocalypse: New Attack Breaks AMD Confidential Computing — www.securityweek.com — 14.10.2025 13:52
- RMPocalypse: Single 8-Byte Write Shatters AMD’s SEV-SNP Confidential Computing — thehackernews.com — 14.10.2025 14:45
-
14.10.2025 13:52 2 articles · 9mo ago
ETH Zurich identifies RMPocalypse in AMD SEV-SNP memory management
Initial DisclosureETH Zurich researchers identified CVE-2025-0033 in AMD Secure Processor (ASP) and SEV-SNP memory management, describing a race condition during Reverse Map Table (RMP) initialization that lets a malicious hypervisor corrupt RMP entries and compromise confidential VM integrity and confidentiality.
Show sources
- RMPocalypse: New Attack Breaks AMD Confidential Computing — www.securityweek.com — 14.10.2025 13:52
- RMPocalypse: Single 8-Byte Write Shatters AMD’s SEV-SNP Confidential Computing — thehackernews.com — 14.10.2025 14:45
-
14.10.2025 13:52 2 articles · 9mo ago
ETH Zurich identifies RMPocalypse in AMD SEV-SNP memory management
Initial DisclosureETH Zurich researchers identified CVE-2025-0033 in AMD Secure Processor (ASP) and SEV-SNP memory management, describing a race condition during Reverse Map Table (RMP) initialization that lets a malicious hypervisor corrupt RMP entries and compromise confidential VM integrity and confidentiality.
Show sources
- RMPocalypse: New Attack Breaks AMD Confidential Computing — www.securityweek.com — 14.10.2025 13:52
- RMPocalypse: Single 8-Byte Write Shatters AMD’s SEV-SNP Confidential Computing — thehackernews.com — 14.10.2025 14:45