Database/Firmware, BMC & network fabric
Intel TDX: insufficient verification of data authenticity in the ring 0 interface leaks trust-domain data
Impact
A privileged host-software adversary - the hypervisor or anyone who has taken it - can get confidential data out of a TDX trust domain, which is exactly the boundary TDX exists to hold. For an operator renting confidential GPU VMs or selling attested enclaves to customers, this weakens the claim that the platform owner cannot see tenant data; the guest has no way to detect or mitigate it from the inside. Intel rates it 5.7 and marks the attack as high complexity with privileged local access required, so this is a trust-guarantee erosion rather than a break-glass emergency. It does not give a tenant a path out of its own VM.
Who can reach it
Local, from privileged host system software (ring 0 hypervisor context). Not reachable by an unprivileged tenant or over the network; requires an already-privileged position on the host plus a high-complexity attack.
What to do
Follow Intel SA-01419. TDX fixes are delivered as platform firmware/TDX module updates that take effect at boot, so budget draining the node and rebooting it rather than a live patch. The record names no fixed version - check the advisory for the module/BIOS level your OEM ships before scheduling the window.
References
Related entries
- Caliptra Core ROM: TOCTOU in update-reset lets compromised MCU firmware bypass secure boot silentlyCVE-2026-11835 · Caliptra Core ROM (UpdateResetFlow staging-address validation)Medium
- Intel processors (indirect branch prediction): Spectre v2: an attacker trains the indirect branch predictor so that aCVE-2017-5715 · Intel processors (indirect branch prediction)Medium
- Intel processors (bounds check bypass): Spectre v1: speculative execution past a bounds check lets an attacker readCVE-2017-5753 · Intel processors (bounds check bypass)Medium
- Intel processors (rogue data cache load): Meltdown: unprivileged code reads kernel memory - and on affected partsCVE-2017-5754 · Intel processors (rogue data cache load)Medium
- Intel processors: speculative sampling of stale data from microarchitectural buffers (MDS)CVE-2018-12126 · Intel processors (microarchitectural data sampling)Medium
- Intel processors (L1 terminal fault, OS/SMM): The OS-level variant of L1 terminal fault: a local user can speculativelyCVE-2018-3620 · Intel processors (L1 terminal fault, OS/SMM)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.