Gaming PC

Intel ‘Sunny Cove’ SGX Vulnerability Discovered

Although originally intended to allow safe execution in an isolated environment, Intel’s Software Guard Extensions (SGX) memory encryption technology can do more harm than good. Processors with Intel’s Sunny Cove microarchitecture have been found to potentially expose data in memory-mapped registers of the local Advanced Programmable Interrupt Controller (APIC). register.

The registers are reportedly not cleanly initialized, so reading them exposes old dates for recent sample data transferred between L2 and last-level caches, including SGX enclave data from superqueues. will beResearchers have dubbed this vulnerability ÆPIC Leak (a.k.a. CWE-665: Improper Initialization), claiming that the bug has a hardware origin.

Related Articles

Back to top button