Security Advisory

CVE-2023-1018

5.5
MEDIUM

Vulnerability Description

An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can read or access sensitive data stored in the TPM.
Published Date February 28, 2023
Official Source NIST NVD Advisory