Home GnuPG
Diffusion GnuPG 93fa34d9a346

tpm: Fix possible buffer overflow in PKDECRYPT

Description

tpm: Fix possible buffer overflow in PKDECRYPT

* tpm2d/tpm2.c (tpm2_ecc_decrypt): Bail out on too long CIPHERTEXT.
(tpm2_rsa_decrypt): Ditto.
  • GnuPG-bug-id: T8045
  • Co-authored-by: NIIBE Yutaka <gniibe@fsij.org>
  • Reported-by: OpenAI Security Research

Details

Provenance
wernerAuthored on Mon, Jan 26, 11:13 AM
Parents
rGc3e387427977: po: Update Swedish translation
Branches
Unknown
Tags
Unknown
Tasks
T8045: Stack-based buffer overflow in TPM2 `PKDECRYPT`