Description
An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can read or access sensitive data stored in the TPM.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Ubuntu USN |
USN-5933-1 | Libtpms vulnerabilities |
References
History
Tue, 04 Nov 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 07 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Microsoft
Subscribe
Windows 10 1507
Subscribe
Windows 10 1607
Subscribe
Windows 10 1809
Subscribe
Windows 10 20h2
Subscribe
Windows 10 21h2
Subscribe
Windows 10 22h2
Subscribe
Windows 11 21h2
Subscribe
Windows 11 22h2
Subscribe
Windows Server 2016
Subscribe
Windows Server 2019
Subscribe
Windows Server 2022
Subscribe
Redhat
Subscribe
Enterprise Linux
Subscribe
Rhel Eus
Subscribe
Trustedcomputinggroup
Subscribe
Trusted Platform Module
Subscribe
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2025-11-04T19:14:39.612Z
Reserved: 2023-02-24T16:06:48.994Z
Link: CVE-2023-1018
Updated: 2025-11-04T19:14:39.612Z
Status : Modified
Published: 2023-02-28T18:15:10.290
Modified: 2025-11-04T20:16:16.827
Link: CVE-2023-1018
OpenCVE Enrichment
No data.
Weaknesses
Ubuntu USN