Vulnerability Database

308,677

Total vulnerabilities in the database

CVE-2024-21977

Incomplete cleanup after loading a CPU microcode patch may allow a privileged attacker to degrade the entropy of the RDRAND instruction, potentially resulting in loss of integrity for SEV-SNP guests.

  • Published: Sep 5, 2025
  • Updated: Nov 16, 2025
  • CVE: CVE-2024-21977
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 3.2
  • AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:L/A:N

CWEs: