VYPR

rpm package

opensuse/swtpm&distro=openSUSE Leap 15.3

pkg:rpm/opensuse/swtpm&distro=openSUSE%20Leap%2015.3

Vulnerabilities (1)

  • CVE-2022-23645Feb 18, 2022
    affected < 0.5.3-150300.3.3.1fixed 0.5.3-150300.3.3.1

    swtpm is a libtpms-based TPM emulator with socket, character device, and Linux CUSE interface. Versions prior to 0.5.3, 0.6.2, and 0.7.1 are vulnerable to out-of-bounds read. A specially crafted header of swtpm's state, where the blobheader's hdrsize indicator has an invalid valu