Database/Firmware, BMC & network fabric
Intel processors supporting SGX (memory protection): Insufficient memory protection on SGX-capable processors gives
CVE-2019-0123Firmware, BMC & network fabriccurated
Impact
Insufficient memory protection on SGX-capable processors gives a privileged local user a privilege-escalation path. Practically, another entry on the list of reasons an SGX platform needs both microcode currency and enforced re-attestation.
Who can reach it
Privileged local access on the host.
What to do
Microcode update and TCB recovery. Late-loadable microcode where the OS ships it; reboot required.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.