CyberRota Analysis
AI-GeneratedCocos AI versions up to and including 0.8.2 are vulnerable due to a flaw in the intra-handshake attested TLS (aTLS) AMD SEV-SNP verification path, which fails to enforce attestation freshness when the reportData value is nil, empty, or omitted. This oversight allows an attacker to present stale or unrelated evidence, potentially leading to unauthorized trust in an unintended attestation context. Organizations utilizing Cocos AI for confidential computing should prioritize upgrading to version 0.9.0 to mitigate this critical vulnerability.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Cocos AI is a confidential computing system for running AI workloads inside trusted execution environments. In versions up to and including 0.8.2, the intra-handshake attested TLS (aTLS) AMD SEV-SNP verification path does not enforce attestation freshness when the expected reportData value is nil, empty, or omitted, leaving the SEV-SNP policy ReportData unset so the verifier accepts unrelated or stale Evidence not bound to the current connection. A relying party that uses this path without an expected reportData as a trust or authorization decision can be induced to trust an unintended attestation context; a supplied non-empty reportData is still validated. The issue is fixed in version 0.9.0.