Two major vulnerabilities found in TPM 2.0


Two vulnerabilities found by Quarkslab in the TPM2.0 reference implementation and reported in November 2022 are now publicly revealed and could affect Billions of devices.

Who can be affected ?

➡️ Large Tech vendors

➡️Organizations using Enterprise PCs, many servers and embedded systems that include a TPM

What can you do next ?

Last Tuesday, February 28th 2023, after a lenghty coordinated disclosure process both CERT/CC and TCG published security advisories describing the issues and solutions to be considered :

CERT: https://kb.cert.org/vuls/id/782720
TCG: https://trustedcomputinggroup.org/wp-content/uploads/TCGVRT0007-Advisory-FINAL.pdf

Read more:
 
Back
Top Bottom