Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30802
HistoryJun 04, 2021 - 5:08 a.m.

Denial Of Service (DoS)

2021-06-0405:08:23
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
denial of service
libtpms.so
rsa decryption
sigbus
bad memory access
swtpm
cryptrsadecrypt()

EPSS

0

Percentile

12.6%

libtpms.so is vulnerable to denial of service. Decrypting data using RSA causes a SIGBUS (bad memory access) and termination of swtpm in CryptRsaDecrypt() in src/tpm2/crypto/openssl/CryptRsa.c.