← Back

CVE-2021-32015

nvd nist
Published: Jun 8, 2021Modified: Jun 17, 2026

JSON object

Loading...
6.0
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
Exploitability: 0.8 / Impact: 5.2
Source: NVD

Description

In Nuvoton NPCT75x TPM 1.2 firmware 7.4.0.0, a local authenticated malicious user with high privileges could potentially gain unauthorized access to TPM non-volatile memory. NOTE: Upgrading to firmware version 7.4.0.1 will mitigate against the vulnerability, but version 7.4.0.1 is not TCG or Common Criteria (CC) certified. Nuvoton recommends that users apply the NPCT75x TPM 1.2 firmware update.

Affected (1)

1 product
Npct75x Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 7.4.0.0
Running on/withPlatform Versions
Nuvoton
Npct75x
Version 1.2

Timeline

No history available yet.