CVE-2026-20885: High severity Intel Intel TDX module vulnerability
Improper authentication in the Intel(R) TDX module for some Intel(R) platforms within Ring 0: Trust Domain may allow an information disclosure and escalation of privilege. System software adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (high) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-20885?
CVE-2026-20885 has a severity rating of risk 41, indicating a significant potential impact.
How do I fix CVE-2026-20885?
To remediate CVE-2026-20885, apply the latest patch or update provided by Intel for the Intel TDX module.
What types of attacks can exploit CVE-2026-20885?
Exploitation of CVE-2026-20885 may allow an information disclosure and privilege escalation by system software adversaries.
Who is affected by CVE-2026-20885?
CVE-2026-20885 affects users of certain Intel platforms that utilize the Intel TDX module.
What systems should be monitored for CVE-2026-20885?
Systems using the Intel TDX module should be monitored for threats related to CVE-2026-20885 due to the risk of privilege escalation.