Database/Firmware, BMC & network fabric
AMD Secure Processor TEE - memory cleanup between trusted applications: The ASP's trusted execution environment fails
Impact
The ASP's trusted execution environment fails to scrub memory between uses, so an attacker able to get a validly signed trusted application loaded can read or poison residue left by a previous TA. On a platform where the ASP handles fTPM state and SEV key material, that residue is exactly the material you least want leaking sideways.
Who can reach it
Local and privileged: the attacker must be able to produce and load a validly signed trusted application, which normally means a signing-key or supply-chain compromise rather than plain root.
What to do
Fixed in AMD reference firmware (AGESA / SEV firmware) and delivered to you only as an OEM SBIOS/BIOS package - Dell, HPE, Supermicro, Lenovo, Gigabyte and the ODMs each rebuild and requalify AMD's AGESA drop before it ships. **Expect months, not weeks**: AMD publishes the bulletin, the OEM ships BIOS somewhere between one and six months later, and for platforms past their support window it may never arrive at all. Applying it is a full node power cycle with the host drained - not a driver reload, not a live patch. Track it as a firmware campaign per server SKU, not per kernel version, and verify afterwards by reading back the SMU/PSP firmware version rather than trusting the BIOS revision string.
References
Related entries
- Arm Trusted Firmware-M: Non-secure world can halt the system, overwrite secure data, or leak secure data via the NSPECVE-2021-27562 · Arm Trusted Firmware-MMedium
- Intel SGX Linux kernel driver: Uncontrolled resource consumption in the in-kernel SGX driver lets a local authenticatedCVE-2021-33135 · Intel SGX Linux kernel driverMedium
- Linux kernel RDMA core (UVERBS_METHOD_QUERY_GID_TABLE): The GID-table query handler used a user-supplied entry sizeCVE-2021-47080 · Linux kernel RDMA core (UVERBS_METHOD_QUERY_GID_TABLE)Medium
- Linux KVM SEV API - host kernel crash from unprivileged guest creation: A non-root host user-level application canCVE-2022-0171 · Linux KVM SEV API - host kernel crash from unprivileged guest creationMedium
- Intel processors (shared buffers data sampling): Incomplete cleanup of microarchitectural fill buffers lets a localCVE-2022-21125 · Intel processors (shared buffers data sampling)Medium
- Intel processors (post-barrier return stack buffer): PBRSB: return predictions made after an IBPB barrier can still useCVE-2022-26373 · Intel processors (post-barrier return stack buffer)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.