Vulnerabilities > Trustedcomputinggroup

DATE CVE VULNERABILITY TITLE RISK
2023-02-28 CVE-2023-1017 Out-of-bounds Write vulnerability in multiple products
An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte data past the end of TPM2.0 command in the CryptParameterDecryption routine.
local
low complexity
trustedcomputinggroup microsoft CWE-787
7.8
2023-02-28 CVE-2023-1018 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDecryption routine.
local
low complexity
trustedcomputinggroup microsoft CWE-125
5.5
2020-11-18 CVE-2020-26933 Improper Initialization vulnerability in Trustedcomputinggroup Trusted Platform Module 2.0
Trusted Computing Group (TCG) Trusted Platform Module Library Family 2.0 Library Specification Revisions 1.38 through 1.59 has Incorrect Access Control during a non-orderly TPM shut-down that uses USE_DA_USED.
local
low complexity
trustedcomputinggroup CWE-665
6.0
2020-08-13 CVE-2020-24332 Link Following vulnerability in multiple products
An issue was discovered in TrouSerS through 0.3.14.
5.5
2018-08-17 CVE-2018-6622 Unspecified vulnerability in Trustedcomputinggroup Trusted Platform Module 2.0
An issue was discovered that affects all producers of BIOS firmware who make a certain realistic interpretation of an obscure portion of the Trusted Computing Group (TCG) Trusted Platform Module (TPM) 2.0 specification.
local
low complexity
trustedcomputinggroup
7.1