IM
IronMonkey Threat Research
‹ Back to ICS Advisories

SSA-628843: Out of Bound Read Vulnerability in TPM 2.0

MEDIUM
CVSS 6.6
Date 2026-08-11T00:00:00+00:00
Source siemens-productcert
Published by Siemens ProductCERT

// Description

The products listed below contain a vulnerability that could allow an attacker to perform an out-of-bound read, potentially leading to information disclosure or denial of service of the TPM. Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.

// Vulnerabilities (1)

CVE ID CVSS Score Severity Description
CVE-2025-2884 6.6 medium
CVE-2025-2884. TCG TPM2.0 Reference implementation's CryptHmacSign helper function is vulnerable to Out-of-Bounds read due to the lack of validation the signature scheme with the signature key's algorithm. See Errata Revision 1.83 and advisory TCGVRT0009 for TCG standard TPM2.0

// Remediations (11)

Patch: Update to V34.01.02 or later version
Update to V34.01.02 or later version
Patch: Update to V26.01.14 or later version
Update to V26.01.14 or later version
Patch: Update to V29.01.09 or later version
Update to V29.01.09 or later version
Patch: Update to V30.01.10 or later version
Update to V30.01.10 or later version
Patch: Update to V32.01.09 or later version
Update to V32.01.09 or later version
Patch: Update to V21.01.20 or later version
Update to V21.01.20 or later version
Patch: Update to V21.01.20 or later version
Update to V21.01.20 or later version
Patch: Update to V34.01.02 or later version
Update to V34.01.02 or later version
Patch: Update to V32.01.09 or later version
Update to V32.01.09 or later version
Patch: Update to V30.01.10 or later version
Update to V30.01.10 or later version
Patch: Update to V29.01.09 or later version
Update to V29.01.09 or later version

// References