AMD SEV Firmware Downgrade via Lock Bit Modification
CVE-2025-52536 Published on February 10, 2026

Improper Prevention of Lock Bit Modification in SEV firmware could allow a privileged attacker to downgrade firmware potentially resulting in a loss of integrity.

NVD

Weakness Type

Improper Implementation of Lock Protection Registers

The product incorrectly implements register lock bit protection features such that protected controls can be programmed even after the lock has been set.


Affected Versions

AMD EPYC™ 9004 Series Processors: AMD EPYC™ 7003 Series Processors: AMD EPYC™ 9005 Series Processors: AMD EPYC™ 8004 Series Processors: AMD EPYC™ Embedded 7003 Series Processors: AMD EPYC™ Embedded 9004 Series Processors (formerly codenamed "Genoa"): AMD EPYC™ Embedded 9005 Series Processors: AMD EPYC™ Embedded 9004 Series Processors (formerly codenamed "Bergamo"): AMD EPYC™ Embedded 8004 Series Processors:

Exploit Probability

EPSS
0.02%
Percentile
4.20%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.