Trustedcomputinggroup
trustedcomputinggroup
6 CVEs • 2 products
Products (2)
Click to collapseToggle
Products (2)
Click to collapse
CVEs (6)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Microsoft Trustedcomputinggroup12Trusted Platform Module Windows 10 1507Windows 10 1607+9 moreNov 4, 2025 Feb 28, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte data past the end of TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit th...Show more |
2Microsoft Trustedcomputinggroup12Trusted Platform Module Windows 10 1507Windows 10 1607+9 moreNov 4, 2025 Feb 28, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnera...Show more |
1Trustedcomputinggroup 1Trusted Platform Module Nov 21, 2024 Nov 18, 2020 N/A· v4 6.0 MEDIUM· v3 3.6 LOW· v2 Trusted Computing Group (TCG) Trusted Platform Module Library Family 2.0 Library Specification Revisions 1.38 through 1.59 has Incorrect Access Control during a non-orderly TPM shut-down that uses USE_DA_USED. Improper i...Show more |
2Fedoraproject Trustedcomputinggroup2Fedora TrousersNov 21, 2024 Aug 13, 2020 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges, the creation of the system.data file is prone to symlink attacks. The tss user can be used to create or corrupt exis...Show more |
1Trustedcomputinggroup 1Trusted Platform Module Nov 21, 2024 Aug 17, 2018 N/A· v4 7.1 HIGH· v3 3.6 LOW· v2 An issue was discovered that affects all producers of BIOS firmware who make a certain realistic interpretation of an obscure portion of the Trusted Computing Group (TCG) Trusted Platform Module (TPM) 2.0 specification....Show more |
tcsd in TrouSerS before 0.3.10 allows remote attackers to cause a denial of service (daemon crash) via a crafted type_offset value in a TCP packet to port 30003. |