Stefanberger Libtpms vulnerabilities
2 known vulnerabilities affecting stefanberger/libtpms.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2026-21444MEDIUMCVSS 5.5v>= 0.10.0, < 0.10.22026-01-02
CVE-2026-21444 [MEDIUM] CWE-327 CVE-2026-21444: libtpms, a library that provides software emulation of a Trusted Platform Module, has a flaw in vers
libtpms, a library that provides software emulation of a Trusted Platform Module, has a flaw in versions 0.10.0 and 0.10.1. The commonly used integration of libtpms with OpenSSL 3.x contained a vulnerability related to the returned IV (initialization vector) when certain symmetric ciphers were used. Instead of returning the last IV it returned the i
cvelistv5nvd
CVE-2025-49133MEDIUMCVSS 5.5v= 0.7.11v= 0.8.9+2 more2025-06-10
CVE-2025-49133 [MEDIUM] CWE-125 CVE-2025-49133: Libtpms is a library that targets the integration of TPM functionality into hypervisors, primarily i
Libtpms is a library that targets the integration of TPM functionality into hypervisors, primarily into Qemu. Libtpms, which is derived from the TPM 2.0 reference implementation code published by the Trusted Computing Group, is prone to a potential out of bounds (OOB) read vulnerability. The vulnerability occurs in the ‘CryptHmacSign’ function with
cvelistv5nvd