Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-92702— Cocos AI: Intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path

Quick assessment

Affected
ultravioletrs cocos
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Cocos AI 是一个用于在可信执行环境(TEE)中运行 AI 工作负载的机密计算系统。在 0.8.2 及之前的版本中,用于进程间握手认证 TLS(aTLS)的 AMD SEV-SNP 验证路径在期望的 reportData 值为空、为空或省略时,未强制执行认证新鲜性校验,导致 SEV-SNP 策略中的 ReportData 字段未被设置,从而使验证器接受与当前连接未绑定的、不相关或过期的证据(Evidence)。依赖方若使用该路径进行信任或授权决策时,若未提供预期的 reportData,可能会被诱导去信任非预

CVSS 9.1 · Critical EPSS 0.21% · P11

Possible ATT&CK Techniques 1 AI

T1557 · Adversary-in-the-Middle

Affected Version Matrix 1

VendorProduct Version RangeStatus
ultravioletrs cocos < 0.9.0 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-92702

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Cocos AI: Intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path
Source: CVE Program / CVE List V5
Vulnerability Description
Cocos AI is a confidential computing system for running AI workloads inside trusted execution environments. In versions up to and including 0.8.2, the intra-handshake attested TLS (aTLS) AMD SEV-SNP verification path does not enforce attestation freshness when the expected reportData value is nil, empty, or omitted, leaving the SEV-SNP policy ReportData unset so the verifier accepts unrelated or stale Evidence not bound to the current connection. A relying party that uses this path without an expected reportData as a trust or authorization decision can be induced to trust an unintended attestation context; a supplied non-empty reportData is still validated. The issue is fixed in version 0.9.0.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
源验证错误
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
ultravioletrs cocos < 0.9.0 -

II. Public POCs for CVE-2026-92702

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-92702

登录查看更多情报信息。

Patches & Fixes for CVE-2026-92702 (1)

Other References for CVE-2026-92702 (2)

IV. Related Vulnerabilities

V. Comments for CVE-2026-92702

No comments yet


Leave a comment