Vulnerabilities in the reference implementation of TPM 2.0 that allow access to data in the cryptochip
Vulnerabilities (CVE-2023-1017, CVE-2023-1018) have been discovered in the reference code of the TPM 2.0 (Trusted Platform Module) specification, leading to writing or reading data outside the allocated buffer. An attack on implementations of cryptoprocessors using vulnerable code could lead to the extraction or overwriting of information stored on the chip, such as cryptographic keys. The ability to overwrite data in the TPM firmware may be […]
