CVE-2025-2884: Out-of-Bounds read vulnerability in TCG TPM2.0 reference implementation
Cert CC: CVE-2025-2884 Out-of-Bounds read vulnerability in TCG TPM2.0 reference implementation
Other sources
CVE-2025-2884 is regarding a vulnerability in TCG TPM2.0 Reference implementation's CryptHmacSign helper function that is vulnerable to Out-of-Bounds read due to the lack of validation the signature scheme with the signature key's algorithm. CERT/CC created this CVE on their behalf. The documented Windows updates incorporate updates in TCG TPM2.0 Reference implementation which address this vulnerability. Please see CVE-2025-2884 for more information.
— Microsoft
TCG TPM2.0 Reference implementation's CryptHmacSign helper function is vulnerable to Out-of-Bounds read due to the lack of validation the signature scheme with the signature key's algorithm. See Errata Revision 1.83 and advisory TCGVRT0009 for TCG standard TPM2.0
— NVD
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch TCGVRT0009 - Upgrade
Upgrade
TCG TPM2.0 Reference implementationto a version that resolves this vulnerability.Patch Errata Revision 1.83 - Compensating control
Apply the documented Windows updates that incorporate the TCG TPM2.0 Reference implementation fixes addressing CVE-2025-2884 (Out-of-Bounds read in CryptHmacSign).
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2884?
The severity of CVE-2025-2884 is considered to be high due to the potential for out-of-bounds read vulnerabilities.
How do I fix CVE-2025-2884?
To mitigate CVE-2025-2884, ensure that you update your TCG TPM2.0 Reference Implementation to the latest available version that addresses this vulnerability.
What are the consequences of CVE-2025-2884?
Exploitation of CVE-2025-2884 could lead to potential information disclosure or cause application crashes due to out-of-bounds access.
Which software is affected by CVE-2025-2884?
CVE-2025-2884 specifically affects the TCG TPM2.0 Reference Implementation.
Is there a public advisory for CVE-2025-2884?
Yes, you can refer to advisory TCGVRT0009 for details regarding CVE-2025-2884 and its implications.