[ubuntu/jammy-security] tpm2-tss 3.2.0-1ubuntu1.1 (Accepted)

Rodrigo Figueiredo Zaiden rodrigo.zaiden at canonical.com
Wed May 29 13:35:52 UTC 2024


tpm2-tss (3.2.0-1ubuntu1.1) jammy-security; urgency=medium

  * SECURITY UPDATE: buffer overflow.
    - debian/patches/CVE-2023-22745.patch: increased the size of the layer 
      handler array by one in tss2_rc.c.
    - CVE-2023-22745
  * SECURITY UPDATE: deserializing issue in FAPI.
    - debian/patches/CVE-2024-29040.patch: check that magic number 
      in quote data equals TPM2_GENERATED.
    - CVE-2024-29040

Date: 2024-05-24 20:01:09.646705+00:00
Changed-By: Federico Quattrin <federico.quattrin at canonical.com>
Maintainer: Mathieu Trudel-Lapierre <ubuntu at cyphermox.net>
Signed-By: Rodrigo Figueiredo Zaiden <rodrigo.zaiden at canonical.com>
https://launchpad.net/ubuntu/+source/tpm2-tss/3.2.0-1ubuntu1.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the jammy-changes mailing list