Database/Firmware, BMC & network fabric
Intel SGX / dynamic voltage and frequency scaling interface: Undervolting the CPU through the privileged
Impact
Undervolting the CPU through the privileged voltage-scaling MSR induces faults inside SGX enclaves, which is enough to extract AES keys and to corrupt RSA-CRT signatures into key-recovering faulty signatures. The attacker is the host operator - which is precisely the party SGX is supposed to be defended against - so this collapses confidential compute on the affected generations.
Who can reach it
Privileged local access on the host (ring 0). That is the SGX threat model: the platform owner attacking a tenant's enclave, or a compromised hypervisor attacking a confidential workload.
What to do
BIOS/firmware update that locks the undervolting MSR, and a TCB recovery: enclaves must re-attest against the new SVN and any secrets sealed under the old TCB should be considered compromised. Because the lock is applied by platform firmware, this needs an OEM BIOS release and a full drain-and-reboot per node - OEM availability historically lagged Intel's advisory by months on server boards.
References
Related entries
- NVIDIA DGX BMC (AMI firmware): The BMC does not validate the RSA-1024 public key used to verify firmware signaturesCVE-2020-11488 · NVIDIA DGX BMC (AMI firmware)Medium
- GRUB2 (cutmem command): The cutmem command was not gated by Secure Boot lockdown, so a privileged user could carveCVE-2020-27779 · GRUB2 (cutmem command)Medium
- Intel Ethernet 700 Series Controller firmware (access control): Insufficient access control inside 700-series NICCVE-2020-8692 · Intel Ethernet 700 Series Controller firmware (access control)Medium
- Intel BIOS firmware: Insufficient control-flow management in Intel BIOS firmware lets a privileged user escalateCVE-2021-0157 · Intel BIOS firmwareMedium
- Intel SGX SDK (asynchronous exit / exception handling): SmashEx: an asynchronous exception delivered at the rightCVE-2021-0186 · Intel SGX SDK (asynchronous exit / exception handling)Medium
- GRUB2 (short-form option parser): Heap out-of-bounds write in the short-form option parserCVE-2021-20225 · GRUB2 (short-form option parser)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.