Hardware: AMD NBIO Lock Bit Bypass for MMIO Routing
CVE-2025-61971 Published on May 13, 2026

Missing lock bit protection for NBIO registers could allow a local admin-privileged attacker to modify MMIO routing configurations, potentially resulting in loss of SEV-SNP guest integrity.

NVD

Weakness Type

Improper Hardware Lock Protection for Security Sensitive Controls

The product implements a register lock bit protection feature that permits security sensitive controls to modify the protected configuration.


Affected Versions

AMD EPYC™ 9004 Series Processors: AMD EPYC™ 7003 Series Processors: AMD EPYC™ 9005 Series Processors: AMD EPYC™ 8004 Series Processors: AMD EPYC™ Embedded 7003 Series Processors: AMD EPYC™ Embedded 9004 Series Processors (formerly codenamed "Genoa"): AMD EPYC™ Embedded 9004 Series Processors (formerly codenamed "Bergamo"): AMD EPYC™ Embedded 8004 Series Processors: AMD EPYC™ Embedded 9005 Series Processors:

Exploit Probability

EPSS
0.01%
Percentile
1.78%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.