VU#431093: TCG TPM 2.0 reference code found vulnerable to information leakage and timing side-channel attacks

CERT Coordination Center Version 2 imported change current

Imported from official source

Overview Two vulnerabilities have been identified in the Trusted Platform Module (TPM) 2.0 reference implementation: CVE-2026-6726 – Information leakage via falsified TPM keys. CVE-2026-6727 – A timing side-channel vulnerability in RSA OAEP decryption. …

This version

Version
2 of 2
Recorded
September 18, 2026 09:42
Change
Imported change
Content hash
80a49cb7044022f734d9bb2e2418556a
All versions
Revision history

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.