CVE-2020-24455
published 2021-02-26CVE-2020-24455: Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access. This…
PriorityP426medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.59%
44.8th percentile
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access. This affects tpm2-tss before 3.0.1 and before 2.4.3.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | tpm2-tss | < tpm2-tss 3.0.1-1 (bookworm) | tpm2-tss 3.0.1-1 (bookworm) |
| fedoraproject | fedora | — | — |
| msrc | cbl2_tpm2-tss_2.4.6-1_on_cbl_mariner_2.0 | — | — |
| msrc | cbl_mariner_1.0_arm | — | — |
| msrc | cbl_mariner_1.0_x64 | — | — |
| msrc | cbl_mariner_2.0_arm | — | — |
| msrc | cbl_mariner_2.0_x64 | — | — |
| msrc | cm1_tpm2-tss_2.4.6-1_on_cbl_mariner_1.0 | — | — |
| tpm2-software | tpm2-tss | >= 0 < 3.0.1-1 | 3.0.1-1 |
| tpm2-software | tpm2-tss | >= 0 < 3.0.1-1 | 3.0.1-1 |
| tpm2-software | tpm2-tss | >= 0 < 3.0.1-1 | 3.0.1-1 |
| tpm2-software | tpm2-tss | >= 0 < 3.0.1-1 | 3.0.1-1 |
| tpm2_software_stack_project | tpm2_software_stack | < 2.4.3 | 2.4.3 |
| tpm2_software_stack_project | tpm2_software_stack | >= 3.0.0 < 3.0.1 | 3.0.1 |
CVSS provenance
nvdv3.16.7MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv6.7MEDIUM
vendor_debian6.7MEDIUM
vendor_msrc6.7MEDIUM
vendor_redhat6.7MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Microsoft
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access. This affects tpm2-tss before 3.0.1 and before 2.4
vendor_msrc·2021-02-09·CVSS 6.7
CVE-2020-24455 [MEDIUM] CWE-909 Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access. This affects tpm2-tss before 3.0.1 and before 2.4
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access. This affects tpm2-tss before 3.0.1 and before 2.4.3.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update
Red Hat
tpm2-tss: FAPI PolicyPCR not instatiating correctly
vendor_redhat·2020-10-13·CVSS 6.7
CVE-2020-24455 [MEDIUM] CWE-456 tpm2-tss: FAPI PolicyPCR not instatiating correctly
tpm2-tss: FAPI PolicyPCR not instatiating correctly
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access. This affects tpm2-tss before 3.0.1 and before 2.4.3.
The tpm2-tss package introduced an implementation of TCG Feature API (FAPI) from v2.4.0. While instantiating TPM policy via FAPI, TPM's Platform Configuration Register (PCR) are used to compute policy digest. While reading PCR values via 'ifapi_read_pcr' routine, a PCR list counter was not set which can lead to an incorrect policy instantiation. This may potentially lead to a DoS scenario.
Package: tpm2-tss (Red Hat Enterprise Linux 7) - Not affected
Package: tpm2-tss (Red Hat Enterprise Linux 8) - Not affected
Debian
CVE-2020-24455: tpm2-tss - Missing initialization of a variable in the TPM2 source may allow a privileged u...
vendor_debian·2020·CVSS 6.7
CVE-2020-24455 [MEDIUM] CVE-2020-24455: tpm2-tss - Missing initialization of a variable in the TPM2 source may allow a privileged u...
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access. This affects tpm2-tss before 3.0.1 and before 2.4.3.
Scope: local
bookworm: resolved (fixed in 3.0.1-1)
bullseye: resolved (fixed in 3.0.1-1)
forky: resolved (fixed in 3.0.1-1)
sid: resolved (fixed in 3.0.1-1)
trixie: resolved (fixed in 3.0.1-1)
GHSA
GHSA-qh4p-3mhw-2cp7: Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access
ghsa_unreviewed·2022-05-24
CVE-2020-24455 [MEDIUM] CWE-909 GHSA-qh4p-3mhw-2cp7: Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access. This affects tpm2-tss before 3.0.1 and before 2.4.3.
OSV
CVE-2020-24455: Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access
osv·2021-02-26·CVSS 6.7
CVE-2020-24455 [MEDIUM] CVE-2020-24455: Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access
Missing initialization of a variable in the TPM2 source may allow a privileged user to potentially enable an escalation of privilege via local access. This affects tpm2-tss before 3.0.1 and before 2.4.3.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugzilla.redhat.com/show_bug.cgi?id=1902167https://github.com/tpm2-software/tpm2-tss/releases/tag/2.4.3https://github.com/tpm2-software/tpm2-tss/releases/tag/3.0.1https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7KPOENCMJU4DMT3BDNUBRK25B3DJ47UO/https://security.gentoo.org/glsa/202107-10https://bugzilla.redhat.com/show_bug.cgi?id=1902167https://github.com/tpm2-software/tpm2-tss/releases/tag/2.4.3https://github.com/tpm2-software/tpm2-tss/releases/tag/3.0.1https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7KPOENCMJU4DMT3BDNUBRK25B3DJ47UO/https://security.gentoo.org/glsa/202107-10
2021-02-26
Published