CVE-2026-98221: KEYS: trusted: Fix tpm2_load_cmd() boundary check
Published Oct 6, 2026
·Updated
In the Linux kernel, the following vulnerability has been resolved:
KEYS: trusted: Fix tpm2loadcmd() boundary check
tpm2loadcmd() does boundary checks against the ASN.1 size i.e., payload->bloblen. Address this by passing the decoded blob size to tpm2loadcmd(), and use it for the boundary checks.
Affected Software
1 affected component
Linux Linux kernel
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Pass the decoded blob size, payload->blob_len, to tpm2_load_cmd() and use it for the boundary checks instead of the ASN.1 size.
Linux kernel KEYS trusted tpm2_load_cmd() boundary-check size = payload->blob_len
Event History
Oct 6, 2026
CVE Published
via MITRE·08:44 AM
Data Sourced
via MITRE·08:44 AM
Description
Data Sourced
via NVD·09:18 AM
Description