GPU VulnDB

Database/Firmware, BMC & network fabric

Intel SGX SDK (< 2.6.100.1): Improper initialisation in the SGX SDK gives an authenticated local user a privilege

CVE-2020-0561Firmware, BMC & network fabriccurated

Impact

Improper initialisation in the SGX SDK gives an authenticated local user a privilege escalation path against enclaves built with it.

Who can reach it

Local authenticated user against a vulnerable enclave.

What to do

Rebuild enclaves with SGX SDK 2.6.100.1 or later and re-attest. Vendor-side.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.