A timing side-channel vulnerability exists in the RSA OAEP decryption implementation. A privileged local attacker with access to the TPM command interface may be able to exploit timing differences to recover information that could allow decryption of ciphertexts encrypted to TPM-managed RSA keys, including the RSA Endorsement Key (EK), including import blobs, credential blobs, and session salts. Under certain conditions, this may also enable the forgery of TPM 2.0 attestations. Refer to TCGVRT0011.
Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.
No cwe for this issue in Windows DNS allows an authorized attacker to elevate privileges locally.
Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.
Buffer over-read in Windows Wired AutoConfig Service allows an authorized attacker to disclose information locally.
Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally.
Buffer over-read in Windows SMB Client allows an unauthorized attacker to disclose information over a network.
Untrusted pointer dereference in Windows GDI allows an authorized attacker to disclose information locally.
Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally.
Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.
Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.
Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally.
Improper verification of cryptographic signature in Windows Schannel allows an unauthorized attacker to bypass a security feature over a network.
Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to disclose information locally.
Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.
Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.
Use of uninitialized resource in Windows Imaging Component allows an authorized attacker to disclose information locally.
AMD Zen Information Disclosure Vulnerability
Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.
Buffer over-read in Windows Win32K allows an authorized attacker to disclose information locally.
Microsoft Remote Registry Service Denial of Service Vulnerability
Microsoft COM for Windows Information Disclosure Vulnerability
Out-of-bounds read in Windows Management Instrumentation allows an authorized attacker to disclose information locally.
AMD Zen Information Disclosure Vulnerability
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.
Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.
Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.
Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally.
Partial string comparison in Windows HTTP Protocol Stack allows an unauthorized attacker to perform tampering over an adjacent network.