Database/Firmware, BMC & network fabric
Intel SGX Platform Software for Linux (AESM daemon): A local attacker can disable the AESM daemon
CVSS 5.5CVE-2018-3689Firmware, BMC & network fabriccurated
Impact
A local attacker can disable the AESM daemon, which is the component that services remote attestation. Kill it and enclaves on that node can no longer prove what they are - so attestation-gated workloads stop being admitted.
Who can reach it
Local attacker on the node, no special privilege required.
What to do
Upgrade SGX PSW for Linux to 2.1.102 or later, and monitor AESM liveness as a first-class signal on confidential-compute nodes. Userspace daemon update and restart.
References
Related entries
- Intel SGX driver for Linux: Insufficient input validation in the out-of-tree SGX Linux driver lets a localCVE-2019-0157 · Intel SGX driver for LinuxMedium
- Intel PTT / fTPM (ECDSA and ECSchnorr timing): The firmware TPM's signing operation leaks nonce information throughCVE-2019-11090 · Intel PTT / fTPM (ECDSA and ECSchnorr timing)Medium
- Linux bnxt_re RoCE driver (bnxt_re_create_srq memory leak): A tenant can exhaust host memory by repeatedly triggeringCVE-2019-19077 · Linux bnxt_re RoCE driver (bnxt_re_create_srq memory leak)Medium
- Intel processors (vector register sampling): Stale values left in vector registers can be sampled by other contextsCVE-2020-0548 · Intel processors (vector register sampling)Medium
- Intel processors (L1D eviction sampling) / SGX attestation keys: Stale data can be sampled out of L1D fill buffersCVE-2020-0549 · Intel processors (L1D eviction sampling) / SGX attestation keysMedium
- AMD EPYC SEV-ES / SEV-SNP - information disclosure: An information-disclosure flaw in SEV-ES and SEV-SNP on EPYC lets aCVE-2020-12966 · AMD EPYC SEV-ES / SEV-SNP - information disclosureMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.