CVE-2024-27457: Low severity Intel TDX Module firmware vulnerability
Published Oct 8, 2024
·Updated
Improper check for unusual or exceptional conditions in Intel(R) TDX Module firmware before version 1.5.06 may allow a privileged user to potentially enable information disclosure via local access.
Affected Software
1 affected component
Intel TDX Module firmware<1.5.06
Event History
Oct 8, 2024
CVE Published
via MITRE·06:43 PM
Data Sourced
via MITRE·06:43 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-27457?
CVE-2024-27457 has a severity level that indicates it can lead to information disclosure under specific conditions.
2
How do I fix CVE-2024-27457?
Fixing CVE-2024-27457 involves upgrading the Intel TDX Module firmware to version 1.5.06 or later.
3
Who is affected by CVE-2024-27457?
CVE-2024-27457 affects users of Intel TDX Module firmware versions prior to 1.5.06.
4
What kind of information could be disclosed due to CVE-2024-27457?
Due to CVE-2024-27457, a privileged user may potentially access sensitive information stored locally.
5
When was CVE-2024-27457 disclosed?
CVE-2024-27457 was disclosed as part of security advisories related to vulnerabilities in Intel firmware.