Intel TDX Module Information Disclosure Vulnerability

Vulnerability

A vulnerability exists in some Intel Trust Domain Extensions (TDX) modules prior to version 1.5 within Ring 0: Hypervisor. This vulnerability involves the use of an uninitialized variable, which may lead to unauthorized information disclosure. An authorized adversary with a privileged user status could exploit this vulnerability through a complex, high-effort attack, potentially allowing data exposure via local access. The attack requires no user interaction and could be executed without special internal knowledge.

Impact

Exploitation of this vulnerability could result in unauthorized information disclosure, allowing sensitive data to be exposed.

Remediation

Intel recommends that users of affected Intel Xeon processors update to the latest version provided by their system manufacturer that addresses this vulnerability.

Added: Feb 10, 2026, 5:24 PM
Updated: Feb 11, 2026, 2:23 AM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.8
exploitability
2.8
remediation
0.0
relevance
2.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.