Source: libtpms X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security
Hi, The following vulnerability was published for libtpms. CVE-2021-3623[0]: out-of-bounds access when trying to resume the state of the vTPM https://github.com/stefanberger/libtpms/pull/223 https://github.com/stefanberger/libtpms/commit/2f30d620d3c053f20d38b54bf76ac0907821d263 https://github.com/stefanberger/libtpms/commit/7981d9ad90a5043a05004e4ca7b46beab8ca7809 https://github.com/stefanberger/libtpms/commit/2e6173c273ca14adb11386db4e47622552b1c00e If you fix the vulnerability please also make sure to include the CVE (Common Vulnerabilities & Exposures) id in your changelog entry. For further information see: [0] https://security-tracker.debian.org/tracker/CVE-2021-3623 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3623 Please adjust the affected versions in the BTS as needed.