CVE-2025-2884: Out-of-Bounds read vulnerability in TCG TPM2.0 reference implementation

Published Jun 10, 2025
·
Updated

Cert CC: CVE-2025-2884 Out-of-Bounds read vulnerability in TCG TPM2.0 reference implementation

Other sources

CVE-2025-2884 is regarding a vulnerability in TCG TPM2.0 Reference implementation's CryptHmacSign helper function that is vulnerable to Out-of-Bounds read due to the lack of validation the signature scheme with the signature key's algorithm. CERT/CC created this CVE on their behalf. The documented Windows updates incorporate updates in TCG TPM2.0 Reference implementation which address this vulnerability. Please see CVE-2025-2884 for more information.

Microsoft

TCG TPM2.0 Reference implementation's CryptHmacSign helper function is vulnerable to Out-of-Bounds read due to the lack of validation the signature scheme with the signature key's algorithm. See Errata Revision 1.83 and advisory TCGVRT0009 for TCG standard TPM2.0

NVD

Affected Software

9 affected componentsFixes available
TCG TPM2.0 Reference Implementation
Microsoft Windows Server 2025
Microsoft Windows Server 2022, 23H2 Edition
Microsoft Windows 11=24H2
Microsoft Windows Server 2025
Microsoft Windows 11=23H2
Microsoft Windows 11=25H2
Microsoft Windows 11=22H2
Microsoft Windows 11=26H1

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade to a fixed release to a version that resolves this vulnerability.

    Patch TCGVRT0009
  2. Upgrade

    Upgrade TCG TPM2.0 Reference implementation to a version that resolves this vulnerability.

    Patch Errata Revision 1.83
  3. Compensating control

    Apply the documented Windows updates that incorporate the TCG TPM2.0 Reference implementation fixes addressing CVE-2025-2884 (Out-of-Bounds read in CryptHmacSign).

Event History

Jun 10, 2025
CVE Published
via MITRE·05:29 PM
Data Sourced
via MITRE·05:29 PM
DescriptionWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Oct 14, 2025
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
Description
Updated
via Microsoft·07:00 AM
SeverityWeaknessAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2025-2884?

The severity of CVE-2025-2884 is considered to be high due to the potential for out-of-bounds read vulnerabilities.

2

How do I fix CVE-2025-2884?

To mitigate CVE-2025-2884, ensure that you update your TCG TPM2.0 Reference Implementation to the latest available version that addresses this vulnerability.

3

What are the consequences of CVE-2025-2884?

Exploitation of CVE-2025-2884 could lead to potential information disclosure or cause application crashes due to out-of-bounds access.

4

Which software is affected by CVE-2025-2884?

CVE-2025-2884 specifically affects the TCG TPM2.0 Reference Implementation.

5

Is there a public advisory for CVE-2025-2884?

Yes, you can refer to advisory TCGVRT0009 for details regarding CVE-2025-2884 and its implications.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203