Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-29038

Опубликовано: 28 июн. 2024
Источник: debian
EPSS Низкий

Описание

tpm2-tools is the source repository for the Trusted Platform Module (TPM2.0) tools. A malicious attacker can generate arbitrary quote data which is not detected by `tpm2 checkquote`. This issue was patched in version 5.7.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
tpm2-toolsfixed5.7-1package
tpm2-toolsno-dsabookwormpackage
tpm2-toolsno-dsabullseyepackage
tpm2-toolspostponedbusterpackage

Примечания

  • https://github.com/tpm2-software/tpm2-tools/commit/66d922d6547b7b4fe4f274fb2ec10b376e0e259c (5.7)

EPSS

Процентиль: 6%
0.00029
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 1 года назад

tpm2-tools is the source repository for the Trusted Platform Module (TPM2.0) tools. A malicious attacker can generate arbitrary quote data which is not detected by `tpm2 checkquote`. This issue was patched in version 5.7.

CVSS3: 4.4
redhat
около 1 года назад

tpm2-tools is the source repository for the Trusted Platform Module (TPM2.0) tools. A malicious attacker can generate arbitrary quote data which is not detected by `tpm2 checkquote`. This issue was patched in version 5.7.

CVSS3: 4.3
nvd
около 1 года назад

tpm2-tools is the source repository for the Trusted Platform Module (TPM2.0) tools. A malicious attacker can generate arbitrary quote data which is not detected by `tpm2 checkquote`. This issue was patched in version 5.7.

CVSS3: 4.3
msrc
12 месяцев назад

Описание отсутствует

suse-cvrf
около 1 года назад

Security update for tpm2.0-tools

EPSS

Процентиль: 6%
0.00029
Низкий