Database/Firmware, BMC & network fabric
Intel SGX Linux kernel driver: Uncontrolled resource consumption in the in-kernel SGX driver lets a local authenticated
CVE-2021-33135Firmware, BMC & network fabriccurated
Impact
Uncontrolled resource consumption in the in-kernel SGX driver lets a local authenticated user exhaust EPC or driver resources and deny SGX to everyone else on the node.
Who can reach it
Local authenticated user with SGX device access - on a confidential-compute node, any tenant.
What to do
Kernel update and reboot. Kernel-only, no firmware.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.