tpm-tools

Edit Package tpm2.0-tools

NOTE: Automatically created during Factory devel project migration by admin.

Refresh
Refresh
Source Files
Filename Size Changed
0001-tpm2_checkquote-Add-comparison-of-pcr-selection.patch 0000002441 2.38 KB
0001-tpm2_checkquote-Fix-check-of-magic-number.patch 0000001238 1.21 KB
fix_bogus_warning.patch 0000000485 485 Bytes
tpm2-tools-5.2.tar.gz 0001072078 1.02 MB
tpm2-tools-5.2.tar.gz.asc 0000000833 833 Bytes
tpm2-tools.keyring 0000013154 12.8 KB
tpm2.0-tools.changes 0000074830 73.1 KB
tpm2.0-tools.spec 0000003577 3.49 KB
Latest Revision
Marcus Rueckert's avatar Marcus Rueckert (darix) committed (revision 2)
- Add 0001-tpm2_checkquote-Fix-check-of-magic-number.patch: tpm2_checkquote
  did not check whether the magic number in the attest is equal to
  TPM2_GENERATED_VALUE, which might allow a malicious actor to generate
  arbitrary quote data, undetected by tpm2_checkquote (bsc#1223687, CVE-2024-29038).
- Add 0001-tpm2_checkquote-Add-comparison-of-pcr-selection.patch:
  tpm2_checkquote did not compare the --pcr parameter passed to the tool with
  the attest. A malicious actor might thus be able to fake a valid
  attestation (bsc#1223689, CVE-2024-29039).
Comments 0
openSUSE Build Service is sponsored by