CVE-2026-108269None▾ SunlitRemote Attestation TLS Clients provides multi-language utilities for verifying attested TLS connections. Prior to 0.5.0, the Rust and Go RA-TLS challenge verifiers accepted quote ReportData that was bound to the certificate public key an…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 2.8 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Remote Attestation TLS Clients provides multi-language utilities for verifying attested TLS connections. Prior to 0.5.0, the Rust and Go RA-TLS challenge verifiers accepted quote ReportData that was bound to the certificate public key and client nonce but not to the active TLS session before permitting application traffic. An attacker who obtained an enclave TLS private key could relay a genuine quote onto another connection, causing the clients to accept an attacker-terminated connection as the attested enclave. This issue is fixed in 0.5.0.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-108268NoneEnclave OS Virtual runs container workloads inside confidential virtual machines with end-to-end attestation
CVE-2026-108267NonePrivasys Go is a maintained fork of the Go programming language that adds RA-TLS support to crypto/tls
CVE-2026-108266NonePrivasys rustls is a maintained fork of the rustls TLS library that adds RA-TLS challenge and channel-binding support
CVE-2026-108265NoneEnclave OS Mini is a Rust-based runtime for confidential applications inside Intel SGX enclaves
CVE-2026-108261Critical· 9.3Tina is a headless content management system
CVE-2026-107804Medium· 5.3Nginx UI is a web user interface for the Nginx web server