Database/Firmware, BMC & network fabric
Crypto API Toolkit for Intel SGX: Improper access control in the SGX Crypto API Toolkit lets an authenticated user
CVSS 8.4CVE-2022-21163Firmware, BMC & network fabriccurated
Impact
Improper access control in the SGX Crypto API Toolkit lets an authenticated user escalate privilege. The toolkit is what many deployments use to put HSM-style key operations inside an enclave, so a break here reaches the keys the enclave was protecting.
Who can reach it
Authenticated user of a system running the Crypto API Toolkit.
What to do
Upgrade to Crypto API Toolkit 2.0 (commit 91ee496) or later and rotate any keys the toolkit held. Userspace/enclave update - requires re-signing and re-attesting the enclave; no reboot.
References
Related entries
- HPE iLO 5 (local privilege escalation to code execution): An unprivileged user can execute arbitrary code in the iLOCVE-2022-28627 · HPE iLO 5 (local privilege escalation to code execution)High
- Phoenix SecureCore Technology 4 (SMI handler, improper access control): An SMI handler with missing access control letsCVE-2023-31100 · Phoenix SecureCore Technology 4 (SMI handler, improper access control)High
- AMD Secure Processor - XGMI Trusted Agent (type confusion): Type confusion in the ASP's XGMI Trusted Agent means aCVE-2023-31323 · AMD Secure Processor - XGMI Trusted Agent (type confusion)High
- Dell SmartFabric OS10 (hard-coded password): A hard-coded password in OS10 10.5.6.x gives an unauthenticated attackerCVE-2024-48831 · Dell SmartFabric OS10 (hard-coded password)High
- Supermicro BMC firmware update signature/validation logic on the X13SEM-F motherboard family: The operator losesCVE-2025-12007 · Supermicro BMC firmware update signature/validation logic on the X13SEM-F motherboard familyHigh
- Junos OS: missing authentication in command processing gives a privileged local user root on line cardsCVE-2025-30650 · Juniper Junos OS (command processing on Linux-based line cards: MPC7-11, LC2101/480/9600, MX304, MX-SPC3, PTX FPC3)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.