Database/Firmware, BMC & network fabric
Intel TDX firmware (PRNG seeding): A predictable seed in the TDX firmware's pseudo-random number generator. Predictable
Impact
A predictable seed in the TDX firmware's pseudo-random number generator. Predictable randomness inside a confidential-compute TCB undermines whatever the module derived from it - key material, nonces, address-space randomisation inside the boundary - so the low CVSS understates the structural concern.
Who can reach it
An authenticated user on the host.
What to do
Update the Intel TDX module. The TDX module is loaded by the SEAM loader at boot, so the practical rollout is: stage the new module, drain every trust domain off the node, and reboot. It is not a live-patchable component and running TDs cannot be migrated through it. After the update, every TD must re-attest because the TDX module SVN is part of the attestation report - so anything that pinned the old measurement will fail until you update your attestation policy too. No OEM BIOS release needed for the module itself, which makes this materially faster than a platform firmware update.
References
Related entries
- AMD SEV-SNP - debug exception delivery to guests: A privileged attacker can suppress delivery of debug exceptionsCVE-2023-20573 · AMD SEV-SNP - debug exception delivery to guestsLow
- AMD CPU microcode - RDRAND entropy after patch load: Incomplete cleanup after loading a microcode patch degrades theCVE-2024-21977 · AMD CPU microcode - RDRAND entropy after patch loadLow
- AMD CPU cache initialization - SEV-SNP guest memory integrity: Improper initialization of CPU cache memory lets aCVE-2024-36331 · AMD CPU cache initialization - SEV-SNP guest memory integrityLow
- AMD IOMMU access control - SEV-SNP RMP check bypass (AMD-SB-3009): An IOMMU access-control flaw lets a privilegedCVE-2023-20581 · AMD IOMMU access control - SEV-SNP RMP check bypass (AMD-SB-3009)Low
- Intel TDX module firmware: Missing check for an exceptional condition in the TDX module allows a privileged userCVE-2024-27457 · Intel TDX module firmwareLow
- AMI MegaRAC SPx (embedded lighttpd web server): Use-after-free in the lighttpd request parser embedded in MegaRAC SPxCVE-2018-25103 · AMI MegaRAC SPx (embedded lighttpd web server)Low
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.