CVE-2020-24455
26.02.2021, 03:15
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access. This affects tpm2-tss before 3.0.1 and before 2.4.3.Enginsight
Vendor | Product | Version |
---|---|---|
tpm2_software_stack_project | tpm2_software_stack | 𝑥 < 2.4.3 |
tpm2_software_stack_project | tpm2_software_stack | 3.0.0 ≤ 𝑥 < 3.0.1 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References