Database/Control plane, storage & DevOps
SPI flash configuration (flash descriptor / protected range registers) across multiple Intel platforms
Impact
Misconfiguration of SPI flash protection lets a local attacker change how the SPI flash behaves, up to and including bricking the node. In a GPU fleet the operator-facing outcome is a hard denial of service that no reimage fixes: the node will not POST and needs a physical flash recovery (external programmer or OEM RMA), so it is an unplanned rack visit and a node out of revenue for days. Where write protection is incomplete rather than merely unstable, the same weakness is the standard route to a persistent BIOS implant that survives every reimage and every tenant handoff.
Who can reach it
Local privileged code on the host writing to the SPI controller's configuration and protected-range registers. Reachable by any tenant with root on a bare-metal node.
What to do
BIOS/platform firmware update from the OEM that sets the flash descriptor and protected-range/BIOS-lock registers correctly - HPE, Dell, Supermicro and Lenovo all shipped these; reboot and drain required. Independently of the patch, audit the flash-protection state on your actual fleet (BIOSWE/BLE/SMM_BWP/PRx and descriptor lock) with a tool like CHIPSEC as part of node acceptance and node reclaim, because these bits are set by the OEM's BIOS build and vary by SKU and by BIOS version even within one OEM.
References
Related entries
- Intel Data Center GPU Max Series 1100 / 1550: An improper conditions check lets a privileged local user takeCVE-2023-47165 · Intel Data Center GPU Max Series 1100 / 1550Medium
- AMD PCIe link handling (memory buffer bounds): A guest VM can drive the PCIe link into an out-of-bounds conditionCVE-2024-21961 · AMD PCIe link handling (memory buffer bounds)Medium
- OpenStack Swift: S3API does not strip X-Copy-From, allowing cross-tenant object readsCVE-2026-71192 · OpenStack Swift S3API middleware (X-Copy-From header handling with s3_acl=true)Medium
- AMD NBIO register lock bits - MMIO routing configuration: The sibling of the SMN issue: unprotected NBIO lock bits letCVE-2025-61971 · AMD NBIO register lock bits - MMIO routing configurationMedium
- ansible-runner: streamed archive extraction follows symlinks and writes outside the target directoryCVE-2026-103754 · ansible-runner (unstream_dir() in the transmit/worker protocol)Medium
- DMTF libspdm - SPDM Requester timeout handling: A libspdm Requester stores the Responder's CTExponentCVE-2023-32690 · DMTF libspdm - SPDM Requester timeout handlingMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.