CVE-2026-108268
Beschrijving NL
Enclave OS Virtual voert containerworkloads uit in vertrouwelijke virtuele machines met end-to-end attestatie. Voorafgaand aan tdx-v0.2.43 en tdx-gpu-v0.6.27 plaatste de uitgever van het TDX/GPU RA-TLS-certificaat het certificaat public-key hash en de client nonce in quote ReportData, maar liet een waarde weg die was gekoppeld aan de actieve TLS-sessie. Een aanvaller die een TLS-privésleutel voor een enclave heeft verkregen, kan een echte offerte doorsturen naar een andere verbinding, waardoor een vertrouwende partij een door de aanvaller beëindigde verbinding accepteert als de geattesteerde enclave. Dit probleem is opgelost in tdx-v0.2.43 en tdx-gpu-v0.6.27.
Origineel (Engels) tonen
Enclave OS Virtual runs container workloads inside confidential virtual machines with end-to-end attestation. Prior to tdx-v0.2.43 and tdx-gpu-v0.6.27, the TDX/GPU RA-TLS certificate issuer placed the certificate public-key hash and client nonce in quote ReportData but omitted a value bound to the active TLS session. An attacker who obtained an enclave TLS private key could relay a genuine quote onto another connection, causing a relying party to accept an attacker-terminated connection as the attested enclave. This issue is fixed in tdx-v0.2.43 and tdx-gpu-v0.6.27.