Description
Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access.
Published: 2024-05-16
Score: 7.9 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-50034 Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access.
Ubuntu USN Ubuntu USN USN-6797-1 Intel Microcode vulnerabilities
History

Tue, 02 Sep 2025 14:00:00 +0000

Type Values Removed Values Added
First Time appeared Intel tdx Module
Netapp
Netapp hci Compute Node Bios
CPEs cpe:2.3:a:intel:tdx_module:*:*:*:*:*:*:*:*
cpe:2.3:o:netapp:hci_compute_node_bios:-:*:*:*:*:*:*:*
Vendors & Products Intel tdx Module
Netapp
Netapp hci Compute Node Bios

Thu, 13 Feb 2025 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Intel
Intel tdx Module Software
CPEs cpe:2.3:a:intel:tdx_module_software:1.5.05.46.698:*:*:*:*:*:*:*
Vendors & Products Intel
Intel tdx Module Software
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Intel Tdx Module Tdx Module Software
Netapp Hci Compute Node Bios
cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published:

Updated: 2025-02-13T17:14:09.944Z

Reserved: 2023-11-27T04:00:20.170Z

Link: CVE-2023-45745

cve-icon Vulnrichment

Updated: 2024-08-02T20:29:31.699Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-16T21:15:58.507

Modified: 2025-09-02T13:57:49.697

Link: CVE-2023-45745

cve-icon Redhat

Severity : Important

Publid Date: 2024-05-14T00:00:00Z

Links: CVE-2023-45745 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses