ZeroHour

CVE-2020-26933

CVSS 3.1
6.0 medium
EPSS
<1%p22
Published
()
Modified
Description

Trusted Computing Group (TCG) Trusted Platform Module Library Family 2.0 Library Specification Revisions 1.38 through 1.59 has Incorrect Access Control during a non-orderly TPM shut-down that uses USE_DA_USED. Improper initialization of this shut-down may result in susceptibility to a dictionary attack.

Vendors
trustedcomputinggroup
Products
trusted platform module
Weakness
CWE-665
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.