VYPR

Trusted Platform Module

by Trustedcomputinggroup

CVEs (4)

  • CVE-2023-1017HigFeb 28, 2023
    risk 0.51cvss 7.8epss 0.01

    An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte data past the end of TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can lead to denial of service (crashing…

  • CVE-2020-26933HigNov 18, 2020
    risk 0.47cvss 7.2epss 0.00

    Trusted Computing Group (TCG) Trusted Platform Module Library Family 2.0 Library Specification Revisions 1.38 through 1.59 has Incorrect Access Control during a non-orderly TPM shut-down that uses USE_DA_USED. Improper initialization of this shut-down may result in…

  • CVE-2018-6622HigAug 17, 2018
    risk 0.46cvss 7.1epss 0.01

    An issue was discovered that affects all producers of BIOS firmware who make a certain realistic interpretation of an obscure portion of the Trusted Computing Group (TCG) Trusted Platform Module (TPM) 2.0 specification. An abnormal case is not handled properly by this firmware…

  • CVE-2023-1018MedFeb 28, 2023
    risk 0.36cvss 5.5epss 0.06

    An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can read or access sensitive data stored in the TPM.