Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-29040
HistoryApr 30, 2024 - 12:00 a.m.

CVE-2024-29040

2024-04-3000:00:00
ubuntu.com
ubuntu.com
8
security
vulnerability
cve-2024-29040
unix

4.3 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N

6.6 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.2%

After deserializing the quote info it was not checked whether
the magic number in the attest is equal TPM2_GENERATED_VALUE.
So an malicious attacker could generate arbitrary quote data
which was not detected by Fapi_VerifyQuote.

OSVersionArchitecturePackageVersionFilename
ubuntu22.04noarchtpm2-tss< 3.2.0-1ubuntu1.1UNKNOWN
ubuntu23.10noarchtpm2-tss< 4.0.1-3ubuntu1.1UNKNOWN
ubuntu24.04noarchtpm2-tss< 4.0.1-7.1ubuntu5.1UNKNOWN

4.3 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N

6.6 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.2%