tpm2-tools is the source repository for the Trusted Platform Module (TPM2.0) tools. A malicious attacker can generate arbitrary quote data which is not detected by `tpm2 checkquote`. This issue was patched in version 5.7.
2024-06-28T14:15:03.033
2025-10-22T20:39:37.057
Analyzed
CVSSv3.1: 4.3 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | tpm2-tools_project | tpm2-tools | < 5.5.1 | Yes |
| Application | tpm2-tools_project | tpm2-tools | < 5.7 | Yes |