important · Boot chain / Physical
DDRop lets a physical host attacker replace selected AMD SEV-SNP guest pages with stale plaintext.
Affects
AMD SEV-SNP, encrypted confidential virtual machines on DDR5 EPYC servers.
The interposer and privileged host control let an attacker reintroduce stale encrypted page contents; known plaintext can turn that into changes to victim data or code pages.
Detail and 4 sources
AMD lists affected processor families but plans no CVE or mitigation because it excludes physical memory-bus attacks from its threat model.