GPU VulnDB

Database/Firmware, BMC & network fabric

Intel Xeon 6 DDRIO configuration (with SGX or TDX): MULTI-TENANT ISOLATION: An improperly implemented security check

CVE-2025-32086Firmware, BMC & network fabriccurated

Impact

MULTI-TENANT ISOLATION: An improperly implemented security check in DDRIO configuration on Xeon 6 lets a privileged local user escalate on SGX/TDX-enabled platforms. DDRIO sits between the memory controller and DRAM, which is the layer memory-encryption integrity depends on.

Who can reach it

Privileged local access on a Xeon 6 host with SGX or TDX enabled.

What to do

OEM platform firmware/BIOS update plus TCB recovery for both SGX and TDX. Drain, reboot, re-attest.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.