CVE-2024-29040
Last modified
CVE-2024-29040 is a medium-severity vulnerability rated 4.3/10 on the CVSS scale. This repository hosts source code implementing the Trusted Computing Group's (TCG) TPM2 Software Stack (TSS). The JSON Quote Info returned by Fapi_Quote has to be deserialized by Fapi_VerifyQuote to the TPM Structure `TPMS_ATTEST`. EPSS estimates a 0.35% chance of exploitation in the next 30 days.
Description
This repository hosts source code implementing the Trusted Computing Group's (TCG) TPM2 Software Stack (TSS). The JSON Quote Info returned by Fapi_Quote has to be deserialized by Fapi_VerifyQuote to the TPM Structure `TPMS_ATTEST`. For the field `TPM2_GENERATED magic` of this structure any number can be used in the JSON structure. The verifier can receive a state which does not represent the actual, possibly malicious state of the device under test. The malicious device might get access to data it shouldn't, or can use services it shouldn't be able to. This issue has been patched in version 4.1.0.
Metrics
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2024-29040?
How severe is CVE-2024-29040?
How do I fix CVE-2024-29040?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-29035Umbraco is an ASP.NET CMS. Failing webhooks logs are availab…5.3
- CVE-2024-29036Saleor Storefront is software for building e-commerce experi…6.5
- CVE-2024-29037datahub-helm provides the Kubernetes Helm charts for deployi…9.1
- CVE-2024-29038tpm2-tools is the source repository for the Trusted Platform…3.3
- CVE-2024-29039tpm2 is the source repository for the Trusted Platform Modul…8.1
- CVE-2024-2904Cross-Site Request Forgery (CSRF) vulnerability in Extend Th…8.8
- CVE-2024-29041Express.js minimalist web framework for node. Versions of Ex…6.1
- CVE-2024-29042Translate is a package that allows users to convert text to …5.3
- CVE-2024-29043Microsoft ODBC Driver for SQL Server Remote Code Execution V…8.8
- CVE-2024-29044Microsoft OLE DB Driver for SQL Server Remote Code Execution…8.8
- CVE-2024-29045Microsoft OLE DB Driver for SQL Server Remote Code Execution…7.5
- CVE-2024-29046Microsoft OLE DB Driver for SQL Server Remote Code Execution…8.8
Are you affected by CVE-2024-29040?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
