
tpm2-software/tpm2-tools
Releases106
Frequency1 month 6 days
Last Release
Stars865
The source repository for the Trusted Platform Module (TPM2.0) tools
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| 9 CRITICAL | — | ||
tpm2 is the source repository for the Trusted Platform Module (TPM2.0) tools. This vulnerability allows attackers to manipulate tpm2_checkquote outputs by altering the TPML_PCR_SELECTION in the PCR input file. As a result, digest values are incorrectly mapped to PCR slots and banks, providing a misleading picture of the TPM state. This issue has been patched in version 5.7. | |||
| 4.3 MEDIUM | — | ||
tpm2-tools is the source repository for the Trusted Platform Module (TPM2.0) tools. A malicious attacker can generate arbitrary quote data which is not detected by `tpm2 checkquote`. This issue was patched in version 5.7. | |||