VYPR

rpm package

opensuse/libtpms&distro=openSUSE Leap 15.4

pkg:rpm/opensuse/libtpms&distro=openSUSE%20Leap%2015.4

Vulnerabilities (3)

  • CVE-2023-1017Feb 28, 2023
    affected < 0.8.2-150300.3.9.1fixed 0.8.2-150300.3.9.1

    An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte data past the end of TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can lead to denial of service (crashing the

  • CVE-2023-1018Feb 28, 2023
    affected < 0.8.2-150300.3.9.1fixed 0.8.2-150300.3.9.1

    An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can read or access sensitive data stored in the TPM.

  • CVE-2021-3623Mar 2, 2022
    affected < 0.8.2-150300.3.6.1fixed 0.8.2-150300.3.6.1

    A flaw was found in libtpms. The flaw can be triggered by specially-crafted TPM 2 command packets containing illegal values and may lead to an out-of-bounds access when the volatile state of the TPM 2 is marshalled/written or unmarshalled/read. The highest threat from this vulner