Executive brief
Intel TDX Guest software is used to enable trusted execution environments on Intel processors. A flaw in version 0.3.1 and earlier allows a privileged attacker to escalate privileges through an incorrect comparison operation in Ring 3 user applications, potentially compromising system confidentiality and integrity with no user interaction required.
Technical details
The vulnerability involves an incorrect comparison operation in Intel TDX Guest software versions before 0.3.1 running in Ring 3 user applications. It is a logic flaw that can be exploited by an attacker with system software privileges and a privileged user context to achieve privilege escalation. The attack is local, requires no special knowledge, no user interaction, and has low complexity. The vulnerability impacts system confidentiality, integrity, and availability at a low level. A patch is available in version 0.3.1 and later, available on GitHub at the intel/confidential-computing repository.
Affected products
- Intel TDX Guest before 0.3.1
Timeline
- 2026-08-11: disclosed
- 2026-08-11: patched: Update to version 0.3.1 or later available