Impact
An uncaught exception can occur in some Intel TDX modules within Ring 0, leading to a denial of service. The vulnerability affects availability only, with no impact on confidentiality or integrity, and is classified under CWE-248.
Affected Systems
Intel TDX modules, version details are not provided.
Risk and Exploitability
The CVSS score of 6.8 indicates a moderate severity for availability. The EPSS score of less than 1% suggests a very low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog. Likely exploitation requires a local attacker with privileged user access, a high complexity attack, and no special internal knowledge or user interaction. Once exploited, the affected system could become unavailable due to a crash of the Trust Domain.
OpenCVE Enrichment