Confidential Virtual Machine Flaw: AMD Patch Push Underway www.databreachtoday.com/confident…
Advanced Micro Devices published fixes for a vulnerability in multiple types of processors that attackers could use to bypass measures meant to isolate virtual machines from each other. Researchers at Swiss public university ETH Zurich dubbed the flaw “RMPocalypse” and privately reported it to U.S.-based AMD on Feb. 3.
On Monday, AMD confirmed the vulnerability, now tracked as CVE-2025-0033, and advised customers to update their firmware. Its risk is that data meant to remain confidential could become accessible. Vulnerable AMD processors are widely used by such major cloud providers as Amazon Web Services, Google Cloud and Microsoft Azure, to provide encrypted, confidential virtual machines for customers.