Two major vulnerabilities found in TPM 2.0


  • Staff
Two vulnerabilities found by Quarkslab in the TPM2.0 reference implementation and reported in November 2022 are now publicly revealed and could affect Billions of devices.

Who can be affected ?

➡️ Large Tech vendors

➡️Organizations using Enterprise PCs, many servers and embedded systems that include a TPM

What can you do next ?

Last Tuesday, February 28th 2023, after a lenghty coordinated disclosure process both CERT/CC and TCG published security advisories describing the issues and solutions to be considered :

CERT: https://kb.cert.org/vuls/id/782720
TCG: https://trustedcomputinggroup.org/wp-content/uploads/TCGVRT0007-Advisory-FINAL.pdf

Read more:
 

Attachments

  • TPM.png
    TPM.png
    4.4 KB · Views: 0
Back
Top Bottom