Improper access control for register interface in the input-output memory management unit (IOMMU) could allow a privileged attacker to cause non-coherent accesses by the AMD secure processor (ASP) potentially resulting in loss of integrity.

Project Subscriptions

Vendors Products
Epyc 8004 Series Processors Subscribe
Epyc 9004 Series Processors Subscribe
Epyc 9005 Series Processors Subscribe
Epyc Embedded 8004 Series Processors Subscribe
Epyc Embedded 9005 Series Processors Subscribe
Ryzen Embedded V1000 Series Processors Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 10 Jun 2026 11:30:00 +0000

Type Values Removed Values Added
First Time appeared Amd
Amd epyc 8004 Series Processors
Amd epyc 9004 Series Processors
Amd epyc 9005 Series Processors
Amd epyc Embedded 8004 Series Processors
Amd epyc Embedded 9005 Series Processors
Amd ryzen Embedded V1000 Series Processors
Vendors & Products Amd
Amd epyc 8004 Series Processors
Amd epyc 9004 Series Processors
Amd epyc 9005 Series Processors
Amd epyc Embedded 8004 Series Processors
Amd epyc Embedded 9005 Series Processors
Amd ryzen Embedded V1000 Series Processors

Tue, 09 Jun 2026 23:15:00 +0000

Type Values Removed Values Added
Title Privilege Escalation via Improper Access Control in IOMMU Register Interface

Tue, 09 Jun 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 09 Jun 2026 18:00:00 +0000

Type Values Removed Values Added
Description Improper access control for register interface in the input-output memory management unit (IOMMU) could allow a privileged attacker to cause non-coherent accesses by the AMD secure processor (ASP) potentially resulting in loss of integrity.
Weaknesses CWE-1262
References
Metrics cvssV4_0

{'score': 4, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:N/VI:N/VA:N/SC:N/SI:H/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: AMD

Published:

Updated: 2026-06-09T18:57:03.527Z

Reserved: 2025-07-23T15:01:50.734Z

Link: CVE-2025-54509

cve-icon Vulnrichment

Updated: 2026-06-09T18:56:57.809Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-06-09T18:16:32.580

Modified: 2026-06-09T19:30:24.713

Link: CVE-2025-54509

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-10T11:22:21Z

Weaknesses