ืคื’ื™ืขื•ื™ื•ืช ื‘ื™ื™ืฉื•ื ื”ื”ืชื™ื™ื—ืกื•ืช ืฉืœ TPM 2.0 ื”ืžืืคืฉืจื•ืช ื’ื™ืฉื” ืœื ืชื•ื ื™ื ื‘-cryptochip

ื‘ืงื•ื“ ืขื ื”ื˜ืžืขืช ื”ื™ื™ื—ื•ืก ืฉืœ ืžืคืจื˜ TPM 2.0 (Trusted Platform Module), ื–ื•ื”ื• ื ืงื•ื“ื•ืช ืชื•ืจืคื” (CVE-2023-1017, CVE-2023-1018) ืฉืžื•ื‘ื™ืœื•ืช ืœื›ืชื™ื‘ื” ืื• ืงืจื™ืืช ื ืชื•ื ื™ื ืžืขื‘ืจ ืœื’ื‘ื•ืœื•ืช ื”ืžืื’ืจ ื”ืžื•ืงืฆื”. ื”ืชืงืคื” ืขืœ ื™ื™ืฉื•ืžื™ ืžืขื‘ื“ ืงืจื™ืคื˜ื• ื‘ืืžืฆืขื•ืช ืงื•ื“ ืคื’ื™ืข ืขืœื•ืœื” ืœื’ืจื•ื ืœื—ื™ืœื•ืฅ ืื• ื”ื—ืœืคื” ืฉืœ ืžื™ื“ืข ืžืื•ื—ืกืŸ ื‘ืฉื‘ื‘ ื›ื’ื•ืŸ ืžืคืชื—ื•ืช ื”ืฆืคื ื”. ื”ื™ื›ื•ืœืช ืœื“ืจื•ืก ื ืชื•ื ื™ื ื‘ืงื•ืฉื—ืช TPM ื™ื›ื•ืœื” ืœืฉืžืฉ ืชื•ืงืฃ ืœืืจื’ื•ืŸ ื‘ื™ืฆื•ืข ื”ืงื•ื“ ืฉืœื• ื‘ื”ืงืฉืจ ืฉืœ ื”-TPM, ืืฉืจ, ืœืžืฉืœ, ื™ื›ื•ืœ ืœืฉืžืฉ ืœื”ื˜ืžืขืช ื“ืœืชื•ืช ืื—ื•ืจื™ื•ืช ื”ืคื•ืขืœื•ืช ื‘ืฆื“ ื”-TPM ื•ืื™ื ืŸ ืžื–ื•ื”ื•ืช. ืขืœ ื™ื“ื™ ืžืขืจื›ืช ื”ื”ืคืขืœื”.

ื”ืคื’ื™ืขื•ื™ื•ืช ื ื’ืจืžื•ืช ืžืื™ืžื•ืช ืฉื’ื•ื™ ืฉืœ ื’ื•ื“ืœ ื”ืคืจืžื˜ืจื™ื ืฉืœ ื”ืคื•ื ืงืฆื™ื” CryptParameterDecryption() ื”ืžืืคืฉืจืช ืœื›ืชื•ื‘ ืื• ืœืงืจื•ื ืฉื ื™ ื‘ืชื™ื ืžืขื‘ืจ ืœื’ื‘ื•ืœ ื”ืžืื’ืจ ื”ืžื•ืขื‘ืจ ืœืคื•ื ืงืฆื™ื” ExecuteCommand() ื•ืžื›ื™ืœ ืืช ื”ืคืงื•ื“ื” TPM2.0. ื‘ื”ืชืื ืœืžื™ืžื•ืฉ ื”ืงื•ืฉื—ื”, ืฉื ื™ ื”ื‘ืชื™ื ืฉื”ื•ื—ืœืคื• ืขืœื•ืœื™ื ืœื”ืฉื—ื™ืช ื’ื ื–ื™ื›ืจื•ืŸ ืฉืื™ื ื• ื‘ืฉื™ืžื•ืฉ ื•ื’ื ื ืชื•ื ื™ื ืื• ืžืฆื‘ื™ืขื™ื ื‘ืขืจื™ืžื”.

ื”ืคื’ื™ืขื•ืช ืžื ื•ืฆืœืช ืขืœ ื™ื“ื™ ืฉืœื™ื—ืช ืคืงื•ื“ื•ืช ืฉืชื•ื›ื ื ื• ื‘ืžื™ื•ื—ื“ ืœืžื•ื“ื•ืœ TPM (ืœืชื•ืงืฃ ื—ื™ื™ื‘ืช ืœื”ื™ื•ืช ื’ื™ืฉื” ืœืžืžืฉืง TPM). ื”ื‘ืขื™ื•ืช ื ืคืชืจื• ื‘ืขื“ื›ื•ืŸ ืžืคืจื˜ TPM 2.0 ืฉืคื•ืจืกื ื‘ื™ื ื•ืืจ (1.59 Errata 1.4, 1.38 Errata 1.13, 1.16 Errata 1.6).

ื”ืกืคืจื™ื™ื” ื”ืคืชื•ื—ื” libtpms, ื”ืžืฉืžืฉืช ืœืืžื•ืœืฆื™ื™ืช ืชื•ื›ื ื” ืฉืœ ืžื•ื“ื•ืœื™ TPM ื•ืฉื™ืœื•ื‘ ืฉืœ ืชืžื™ื›ื” ื‘-TPM ื‘-Hypervisors, ื’ื ื”ื™ื ืคื’ื™ืขื”. ื”ืคื’ื™ืขื•ืช ืชื•ืงื ื” ื‘ืžื”ื“ื•ืจืช libtpms 0.9.6.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”