Database/Firmware, BMC & network fabric
Intel TDX module: insecure storage of sensitive information exposes trust domain data to Ring 0 software
Impact
On hosts using TDX to run confidential VMs, the TDX module is the component that is supposed to keep a compromised or hostile hypervisor out of tenant memory. Intel reports that sensitive information is stored insecurely inside the module, so privileged system software on the host can read data it should not be able to see, with subsequent confidentiality impact beyond the module itself. For a GPU cloud that sells confidential-computing SKUs, this weakens the exact guarantee the tenant is paying for: the host operator (or anyone who has taken over the host) is no longer fully excluded. Intel rates the attack high complexity and it requires an already-privileged foothold on the host, so this is an erosion of the confidential-computing boundary rather than a remote break-in.
Who can reach it
Local, from privileged system software on the host (Ring 0 / VMM level). No remote or unauthenticated path; the attacker must already control privileged host software.
What to do
Apply the updated Intel TDX module per Intel SA-01436. Delivery is through Intel/OEM platform firmware channels, so plan the update per node: evacuate or shut down running trust domains, apply the update, and reboot the node before re-admitting confidential workloads. Intel's advisory is the only source for the fixed module version - check it against the exact Xeon SKUs listed rather than assuming fleet-wide applicability.
References
Related entries
- Intel TDX module: uncaught exception lets privileged host software deny service to trust domainsCVE-2026-20775 · Intel TDX module (Trust Domain Extensions, 4th/5th Gen Xeon Scalable)Medium
- NVIDIA UFM Enterprise: crafted user-management API request lets an admin inject commands on the fabric managerCVE-2026-24167 · NVIDIA UFM Enterprise (user management API)Medium
- NVIDIA UFM Enterprise: IBDiagnet API accepts crafted requests that inject commands on the fabric manager hostCVE-2026-24168 · NVIDIA UFM Enterprise (IBDiagnet API)Medium
- OpenBMC bmcweb mTLS client-certificate UPN validation: Where mTLS is configured, bmcweb matches the certificate's UPNNCVD-2026-004-openbmc-bmcweb-mtls-client-certi · OpenBMC bmcweb mTLS client-certificate UPN validationMedium
- Cisco NX-OS CLI: CLI command injection giving root-level execution on the switch OS for an authenticated adminCVE-2017-12334 · Cisco NX-OS CLIMedium
- Intel Server Board / Server System / Compute Module platform firmware: Improper memory initialisation in platformCVE-2018-12204 · Intel Server Board / Server System / Compute Module platform firmwareMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.