CVE-2017-7524

7.5HIGH

tpm2-tools versions before 1.1.1 are vulnerable to a password leak due to transmitting password in plaintext from client to server when generating HMAC.

Published: 6/27/2017Updated: 4/20/2025

Description

tpm2-tools versions before 1.1.1 are vulnerable to a password leak due to transmitting password in plaintext from client to server when generating HMAC.

AI AnalysisPowered by AI

Affected Products

tpm2-tools_projecttpm2.0-tools

References