CVE-2023-20592: exploitation status and patch state
CVE-2023-20592 · CVSS 6.5 MEDIUM · EPSS 1%
Improper or unexpected behavior of the INVD instruction in some AMD CPUs may allow an attacker with a malicious hypervisor to affect cache line write-back behavior of the CPU leading to a potential loss of guest virtual machine (VM) memory integrity.
Is CVE-2023-20592 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at 1%.
Public exploit code: none found in monitored sources.