Vulnerabilities > Trusted Boot Project > Trusted Boot > 1.9.6

DATE CVE VULNERABILITY TITLE RISK
2017-11-16 CVE-2017-16837 Improper Input Validation vulnerability in Trusted Boot Project Trusted Boot 1.9.6
Certain function pointers in Trusted Boot (tboot) through 1.9.6 are not validated and can cause arbitrary code execution, which allows local users to overwrite dynamic PCRs of Trusted Platform Module (TPM) by hooking these function pointers.
local
low complexity
trusted-boot-project CWE-20
4.6