Web: https://www.linuxsecurity.com/advisories/mageia/mageia-2023-0102-libtpms-security-update-d0ncx8snnzoj?rss

March 18, 2023, 10:17 p.m. | LinuxSecurity Advisories

LinuxSecurity.com - Hybrid RSS www.linuxsecurity.com

An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte data past the end of TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can lead to denial of service (crashing the TPM chip/process or rendering it unusable) and/or arbitrary code execution in

linux linux security mageia security security update update

Cyber Security Specialist

@ NielsenIQ | Algiers, Algeria

Chief Information Security Officer

@ Business Wire | United States

Sr. Red Team Engineer

@ Picus | Ankara, Turkey

Cyber Security Expert

@ AVIV Group | Paris, France

Security Architect

@ Eurofins | Barcelona, Poland

Engineering Manager, Cloud Security

@ Patreon | Remote

Sr. Cybersecurity Engineer - Identity and Access Management

@ Visa | Bengaluru, India

Research Engineer- Atmospheric Perils Vulnerability

@ Verisk | Boston, MA, United States

Security Engineer, SIRT

@ Amazon.com | Dublin, IRL

Sr Incident Response Analyst

@ ServiceNow | Dublin, Ireland

Security Architect

@ AVIV Group | Paris, France

Regulatory Compliance Specialist - ISMS

@ Intelerad | Remote, OR, United States