tpm2 software stack project kayıtları
tpm2 software stack project üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1
- CWE-502 Deserialization of Untrusted Data1
- CWE-909 Missing Initialization of Resource1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
26İzleyin | CVE-2020-24455İstismar yok | Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via loctpm2 software stack project · tpm2 software stack · CWE-909 | Orta6,7 | — | %0,6 | 25 Şub 2021 |
25İzleyin | CVE-2023-22745İstismar yok | Buffer Overlow in TSS2_RC_Decode in tpm2-tsstpm2 software stack project · tpm2 software stack · CWE-120 | Orta6,4 | — | %0,5 | 19 Oca 2023 |
17İzleyin | CVE-2024-29040İstismar yok | Fapi Verify Quote: Does not detect if quote was not generated by TPMtpm2-software · tpm2-tss · CWE-502 | Orta4,3 | — | %0,3 | 28 Haz 2024 |
- CVE-2020-2445526İzleyin
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via loc
OrtaCVSS 6,7İstismar yokEPSS %1tpm2 software stack project · tpm2 software stack25 Şub 2021
- CVE-2023-2274525İzleyin
Buffer Overlow in TSS2_RC_Decode in tpm2-tss
OrtaCVSS 6,4İstismar yokEPSS %1tpm2 software stack project · tpm2 software stack19 Oca 2023
- CVE-2024-2904017İzleyin
Fapi Verify Quote: Does not detect if quote was not generated by TPM
OrtaCVSS 4,3İstismar yokEPSS %0tpm2-software · tpm2-tss28 Haz 2024