A flaw was found in libtpms. The flaw can be triggered by specially-crafted TPM 2 command packets containing illegal values and may lead to an out-of-bounds access when the volatile state of the TPM 2 is marshalled/written or unmarshalled/read. The highest threat from this vulnerability is to system availability.
2022-03-02T23:15:08.623
2024-11-21T06:22:00.440
Modified
CVSSv3.1: 6.1 (MEDIUM)
AV:L/AC:L/Au:N/C:P/I:N/A:P
3.9
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | libtpms_project | libtpms | < 0.6.5 | Yes |
Application | libtpms_project | libtpms | < 0.7.8 | Yes |
Application | libtpms_project | libtpms | < 0.8.4 | Yes |
Operating System | redhat | enterprise_linux | 8.0 | Yes |
Operating System | fedoraproject | fedora | 34 | Yes |