CVE-2019-11090
published 2019-12-18CVE-2019-11090: Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.0 and 14.0.10; Intel(R) TXE 3.1.70…
PriorityP334medium5.9CVSS 3.1
AVNACHPRNUINSUCHINAN
EPSS
2.34%
81.7th percentile
Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.0 and 14.0.10; Intel(R) TXE 3.1.70 and 4.0.20; Intel(R) SPS before versions SPS_E5_04.01.04.305.0, SPS_SoC-X_04.00.04.108.0, SPS_SoC-A_04.00.04.191.0, SPS_E3_04.01.04.086.0, SPS_E3_04.08.04.047.0 may allow an unauthenticated user to potentially enable information disclosure via network access.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| intel | platform_trust_technology_firmware | 11.0 – 11.8.70 | — |
| intel | platform_trust_technology_firmware | >= 11.10 < 11.11.70 | 11.11.70 |
| intel | platform_trust_technology_firmware | >= 11.20 < 11.22.70 | 11.22.70 |
| intel | platform_trust_technology_firmware | >= 12.0 < 12.0.45 | 12.0.45 |
| intel | platform_trust_technology_firmware | >= 13.0 < 13.0.0 | 13.0.0 |
| intel | platform_trust_technology_firmware | >= 14.0.0 < 14.0.10 | 14.0.10 |
| intel | server_platform_services_firmware | >= sps_e3_04.01.00.000.0 < sps_e3_04.01.04.086.0 | sps_e3_04.01.04.086.0 |
| intel | server_platform_services_firmware | >= sps_e5_04.00.00.000.0 < sps_e5_04.01.04.305.0 | sps_e5_04.01.04.305.0 |
| intel | server_platform_services_firmware | >= sps_soc-a_04.00.00.000.0 < sps_soc-a_04.00.04.191.0 | sps_soc-a_04.00.04.191.0 |
| intel | server_platform_services_firmware | >= sps_soc-x_04.00.00.000.0 < sps_soc-x_04.00.04.108.0 | sps_soc-x_04.00.04.108.0 |
| intel | trusted_execution_engine_firmware | >= 3.0 < 3.1.70 | 3.1.70 |
| intel | trusted_execution_engine_firmware | >= 4.0 < 4.0.20 | 4.0.20 |
CVSS provenance
nvdv3.15.9MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
vendor_redhat5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hwwm-4fw6-6gpf: Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11
ghsa_unreviewed·2022-05-24
CVE-2019-11090 [MEDIUM] CWE-362 GHSA-hwwm-4fw6-6gpf: Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11
Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.0 and 14.0.10; Intel(R) TXE 3.1.70 and 4.0.20; Intel(R) SPS before versions SPS_E5_04.01.04.305.0, SPS_SoC-X_04.00.04.108.0, SPS_SoC-A_04.00.04.191.0, SPS_E3_04.01.04.086.0, SPS_E3_04.08.04.047.0 may allow an unauthenticated user to potentially enable information disclosure via network access.
Red Hat
hw: ECDSA signature timing vulnerabilities in TPM module
vendor_redhat·2020-01-08·CVSS 5.9
CVE-2019-11090 [MEDIUM] CWE-385 hw: ECDSA signature timing vulnerabilities in TPM module
hw: ECDSA signature timing vulnerabilities in TPM module
Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.0 and 14.0.10; Intel(R) TXE 3.1.70 and 4.0.20; Intel(R) SPS before versions SPS_E5_04.01.04.305.0, SPS_SoC-X_04.00.04.108.0, SPS_SoC-A_04.00.04.191.0, SPS_E3_04.01.04.086.0, SPS_E3_04.08.04.047.0 may allow an unauthenticated user to potentially enable information disclosure via network access.
Cryptographic timing vulnerabilities were discovered in certain versions of the Trusted Platform Module (TPM) firmware distributed by Intel and STMicroelectronics. Software that uses the TPM to compute ECDSA signatures could leak information through the timing of ECDSA signature operations, allowing an attacker to recov
No detection rules found.
No public exploits indexed.
arXiv
TPM-FAIL: TPM meets Timing and Lattice Attacks
arxiv_fulltext·2019-11-13
TPM-FAIL: TPM meets Timing and Lattice Attacks
TPM-Fail: TPM meets Timing and Lattice Attacks
## Abstract
Trusted Platform Module (TPM) serves as a hardware-based root of trust that protects cryptographic keys from privileged system and physical adversaries.
In this work, we perform a black-box timing analysis of TPM 2.0 devices deployed on commodity computers.
Our analysis reveals that some of these devices feature secret-dependent execution times during signature generation based on elliptic curves.
In particular, we discovered timing leakage on an Intel firmware-based TPM as well as a hardware TPM.
We show how this information allows an attacker to apply lattice techniques to recover 256-bit private keys for ECDSA and ECSchnorr signatures.
On Intel fTPM, our key recovery succeeds after about 1,300 observations and in less than two
Bugzilla
CVE-2019-11090 CVE-2019-16863 hw: ECDSA signature timing vulnerabilities in TPM module
bugzilla·2020-01-08·CVSS 5.9
CVE-2019-11090 [MEDIUM] CVE-2019-11090 CVE-2019-16863 hw: ECDSA signature timing vulnerabilities in TPM module
CVE-2019-11090 CVE-2019-16863 hw: ECDSA signature timing vulnerabilities in TPM module
Vulnerabilities in TPM implementations provided by Intel and ST.
Discussion:
External References:
https://tpm.fail/
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00241.html
https://www.st.com/content/st_com/en/campaigns/tpm-update.html
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2019-11090
https://access.redhat.com/security/cve/cve-2019-16863
---
Statement:
This is a vulnerability in TPM firmware distributed by hardware vendors, not by Red Hat. Red Hat Enterprise Linux exposes the TPM device at /dev/tpm* where it is available for software with the correct privileg
2019-12-18
Published