CVE Vulnerabilities

CVE-2025-29934

Incomplete Cleanup

Published: Nov 21, 2025 | Modified: Nov 25, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

A bug within some AMD CPUs could allow a local admin-privileged attacker to run a SEV-SNP guest using stale TLB entries, potentially resulting in loss of data integrity.

Weakness

The product does not properly “clean up” and remove temporary or supporting resources after they have been used.

Affected Software

Name Vendor Start Version End Version
Amd64-microcode Ubuntu devel *
Amd64-microcode Ubuntu esm-infra-legacy/trusty *
Amd64-microcode Ubuntu esm-infra/bionic *
Amd64-microcode Ubuntu esm-infra/focal *
Amd64-microcode Ubuntu esm-infra/xenial *
Amd64-microcode Ubuntu jammy *
Amd64-microcode Ubuntu noble *
Amd64-microcode Ubuntu plucky *
Amd64-microcode Ubuntu questing *

Potential Mitigations

References