REDHAT-BUG-2278989: Medium severity Intel Sapphire Rapids vulnerability
On Sapphire Rapids and related platforms, the DSA and IAA devices have an erratum (INTEL-SA-01084) that causes direct access (for example, by using the ENQCMD or MOVDIR64 instructions) from untrusted applications to be a security problem.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2278989?
The severity of REDHAT-BUG-2278989 is categorized as medium (4).
What platforms are affected by REDHAT-BUG-2278989?
REDHAT-BUG-2278989 affects the Intel Sapphire Rapids and related platforms.
What is the nature of the vulnerability in REDHAT-BUG-2278989?
The vulnerability allows direct access to DSA and IAA devices from untrusted applications, presenting a security risk.
How can I mitigate the risks associated with REDHAT-BUG-2278989?
Mitigating the risks of REDHAT-BUG-2278989 involves restricting access to the affected DSA and IAA devices and applying the recommended patches.
Is there a known workaround for REDHAT-BUG-2278989?
Currently, a specific workaround for REDHAT-BUG-2278989 is not provided, but ensuring proper application control may help.