MidnightBSD

Advisories for trustedcomputinggroup

CVE-2012-0698 MEDIUM

tcsd in TrouSerS before 0.3.10 allows remote attackers to cause a denial of service (daemon crash) via a crafted type_offset value in a TCP packet to port 30003.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-119,

Products Affected

Vendor Product Version
trustedcomputinggroup trousers 0.3.6
trustedcomputinggroup trousers 0.3.4
trustedcomputinggroup trousers 0.3.8
trustedcomputinggroup trousers 0.2.9.1
trustedcomputinggroup trousers 0.2.8
trustedcomputinggroup trousers 0.3.1
trustedcomputinggroup trousers 0.2.9.2
trustedcomputinggroup trousers 0.3.7
trustedcomputinggroup trousers *
trustedcomputinggroup trousers 0.3.5
trustedcomputinggroup trousers 0.3.2
trustedcomputinggroup trousers 0.2.9
trustedcomputinggroup trousers 0.3.0
trustedcomputinggroup trousers 0.3.3
CVE-2018-6622 LOW

An issue was discovered that affects all producers of BIOS firmware who make a certain realistic interpretation of an obscure portion of the Trusted Computing Group (TCG) Trusted Platform Module (TPM) 2.0 specification. An abnormal case is not handled properly by this firmware while S3 sleep and can clear TPM 2.0. It allows local users to overwrite static PCRs of TPM and neutralize the security features of it, such as seal/unseal and remote attestation.

CVSS 2.0

Severity: LOW

Problem Type: NVD-CWE-noinfo,

Products Affected

Vendor Product Version
trustedcomputinggroup trusted_platform_module 2.0
CVE-2020-24332 MEDIUM

An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges, the creation of the system.data file is prone to symlink attacks. The tss user can be used to create or corrupt existing files, which could possibly lead to a DoS attack.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-59,

Products Affected

Vendor Product Version
fedoraproject fedora 33
trustedcomputinggroup trousers *
CVE-2020-26933 LOW

Trusted Computing Group (TCG) Trusted Platform Module Library Family 2.0 Library Specification Revisions 1.38 through 1.59 has Incorrect Access Control during a non-orderly TPM shut-down that uses USE_DA_USED. Improper initialization of this shut-down may result in susceptibility to a dictionary attack.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
cve@mitre.org 7.2 HIGH CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:N 0.8 5.8
nvd@nist.gov 6.0 MEDIUM CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N 0.8 5.2

CVSS 2.0

Severity: LOW

Problem Type: CWE-665,

Products Affected

Vendor Product Version
trustedcomputinggroup trusted_platform_module 2.0
CVE-2023-1017

An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte data past the end of TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can lead to denial of service (crashing the TPM chip/process or rendering it unusable) and/or arbitrary code execution in the TPM context.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 7.8 HIGH CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H 1.8 5.9

Products Affected

Vendor Product Version
microsoft windows_11_22h2 *
microsoft windows_server_2016 *
microsoft windows_10_1607 *
microsoft windows_10_20h2 *
microsoft windows_10_22h2 *
microsoft windows_server_2019 *
microsoft windows_server_2022 *
microsoft windows_10_21h2 *
microsoft windows_10_1809 *
trustedcomputinggroup trusted_platform_module 2.0
microsoft windows_11_21h2 *
microsoft windows_10_1507 *
CVE-2023-1018

An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can read or access sensitive data stored in the TPM.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 5.5 MEDIUM CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N 1.8 3.6

Products Affected

Vendor Product Version
microsoft windows_11_22h2 *
microsoft windows_server_2016 *
microsoft windows_10_1607 *
microsoft windows_10_20h2 *
microsoft windows_10_22h2 *
microsoft windows_server_2019 *
microsoft windows_server_2022 *
microsoft windows_10_21h2 *
microsoft windows_10_1809 *
trustedcomputinggroup trusted_platform_module 2.0
microsoft windows_11_21h2 *
microsoft windows_10_1507 *