Skip to content
IntelCVE-2025-31356

Intel Trust Domain Extensions (Intel TDX): information disclosure

Medium5.7CVE-2025-31356 · Published Aug 11, 2026 · updated Aug 12, 2026

Insufficient verification of data authenticity for some Intel(R) Trust Domain Extensions (Intel(R) TDX) within Ring 0: Hypervisor may allow an information disclosure. A system software adversary with a privileged user access combined with a high complexity attack may enable data exposure. This result may potentially occur via local access when attack requirements are present without any user interaction. The potential vulnerability may impact the confidentiality (high), integrity (low) and no effect on availability. Subsequent system impacts include reduced confidentiality (low), integrity (low), and no effect on availability.

Intel advisory

Affected versions

PackageAffectedFixed in
Intel(R) Trust Domain Extensions (Intel(R) TDX)
Product
<= See referencesNo fix yet
Details and references
CVSS 4.0
CVSS:4.0/AV:L/AC:H/AT:P/PR:H/UI:N/VC:H/VI:L/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Severity from
the vendor (its own CVE record or advisory)
Weakness
CWE-345

More Intel advisories

All Intel
Advisory
Intel reference platforms: information disclosure
Medium4.0Aug 11
Intel Xeon processors: improper input validation
Medium4.0Aug 11
Intel Processors: information disclosure
Medium4.0Aug 11
Intel Extension for PyTorch: unsafe deserialization
Medium4.6Aug 11
Intel Transfer Learning Tool: privilege escalation
Medium6.3Aug 11
Intel Slim Bootloader may allow an information disclosure. S: integer overflow
Low2.4Aug 11

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.