A flaw was found in libtpms. The flaw can be triggered by specially-crafted TPM 2 command packets containing illegal values and may lead to an out-of-bounds access when the volatile state of the TPM 2 is marshalled/written or unmarshalled/read. The highest threat from this vulnerability is to system availability.
| Software | From | Fixed in |
|---|---|---|
| libtpms_project / libtpms | 0.8.0 | 0.8.4 |
| libtpms_project / libtpms | 0.7.0 | 0.7.8 |
| libtpms_project / libtpms | - | 0.6.5 |
| redhat / enterprise_linux | 8.0 | 8.0.x |
| fedoraproject / fedora | 34 | 34.x |