HPE Security Advisory
Published Date: Not specified
Advisory Summary
🔥 Advisory Summary: HPE Cray XD670 + Intel processors (Intel TDX) — INTEL-SA-01419
HPE has published HPESBHF05069 rev.1 addressing a security issue affecting HPE Cray XD670 servers when using certain Intel processors, with impact tied to the Intel Trust Domain Extensions (Intel TDX) module. The advisory references INTEL-SA-01419 and includes guidance aligned to the 2026.2 IPU software/firmware stream.
- Affected environment: HPE Cray XD670 systems configured with Intel TDX
- Affected component: Intel TDX module
- Likely exposure: deployments using confidential computing / TDX-based isolation, where the TDX module behavior could be impacted until mitigations are applied.
- regulated workloads
- secure multi-tenant HPC scenarios
- cloud-like deployment patterns on-prem
- TDX capability/attestation status is stable
- workloads can start normally
- no unexpected changes in isolation/attestation outcomes
- If you run workloads that rely on TDX isolation guarantees, treat this as priority patching rather than “optional hardening.”
- Validate downstream dependencies (orchestrators, security tooling, attestation pipelines) after the update to avoid operational drift.
⛳ Takeaway for Infrastructure Teams
Apply HPESBHF05069 rev.1 mitigations to Cray XD670 + Intel TDX configurations promptly, targeting the advisory’s INTEL-SA-01419 fixes in the 2026.2 IPU line, and verify TDX health/attestation post-change.
Reference: Vendor Advisory