microsoft / ms-tpm-20-ref

Reference implementation of the TCG Trusted Platform Module 2.0 specification.
Other
343 stars 133 forks source link

crypt: fix CVE-2023-1018 and CVE-2023-1017 #86

Closed shjala closed 1 year ago

shjala commented 1 year ago

This changes adds necessary checks as described in "Errata Version 1.4 for TCG Trusted Platform Module Library, Family 2.0 Level 00 Revision 1.59" section "2.6.1".

shjala commented 1 year ago

@microsoft-github-policy-service agree

bradlitterell commented 1 year ago

Thanks for the PR, but we have a different version of this fix that we will be checking in soon.