HIGH
tboot: Incorrect validation of certain function pointers
Published Nov 16, 2017
7.8
HIGHCVSS 3.0
EPSS 0.41%
Description
Certain function pointers in Trusted Boot (tboot) through 1.9.6 are not validated and can cause arbitrary code execution, which allows local users to overwrite dynamic PCRs of Trusted Platform Module (TPM) by hooking these function pointers.
Affected products
No data.
- 1.9.6
No data.
Red Hat Enterprise Linux 6
tboot
Will not fix
Red Hat Enterprise Linux 7
tboot
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | tboot | Will not fix | n/a |
| Red Hat Enterprise Linux 7 | tboot | Will not fix | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (7)
- https://access.redhat.com/security/cve/CVE-2017-16837 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1515198 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2017-8011 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2017-16837
- https://sourceforge.net/p/tboot/code/ci/521c58e51eb5be105a29983742850e72c44ed80e/ x_refsource_MISCIssue TrackingPatchThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2017-16837
- https://www.usenix.org/conference/usenixsecurity18/presentation/han x_refsource_MISC
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2017-16837 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1515198 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2017-8011 | Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2017-16837 | ||
| https://sourceforge.net/p/tboot/code/ci/521c58e51eb5be105a29983742850e72c44ed80e/ | x_refsource_MISCIssue TrackingPatchThird Party Advisory | |
| https://www.cve.org/CVERecord?id=CVE-2017-16837 | ||
| https://www.usenix.org/conference/usenixsecurity18/presentation/han | x_refsource_MISC |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Nov 16, 2017
Updated Aug 5, 2024
Reserved Nov 15, 2017
Link CVE-2017-16837
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2017-8011 Assigner mitre
Published Nov 16, 2017
Updated Aug 5, 2024
Exploited since n/a
Link EUVD-2017-8011