Synopsis
Low: tpm2-tools security update
Type/Severity
Security Advisory: Low
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
View affected systems
Topic
An update for tpm2-tools is now available for Red Hat Enterprise Linux 9.
Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
The tpm2-tools packages add a set of utilities for management and utilization of Trusted Platform Module (TPM) 2.0 devices from user space.
Security Fix(es):
- tpm2-tools: arbitrary quote data may go undetected by tpm2_checkquote (CVE-2024-29038)
- tpm2-tools: pcr selection value is not compared with the attest (CVE-2024-29039)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Red Hat Enterprise Linux 9.5 Release Notes linked from the References section.
Affected Products
-
Red Hat Enterprise Linux for x86_64 9 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.6 x86_64
-
Red Hat Enterprise Linux Server - AUS 9.6 x86_64
-
Red Hat Enterprise Linux for IBM z Systems 9 s390x
-
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.6 s390x
-
Red Hat Enterprise Linux for Power, little endian 9 ppc64le
-
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.6 ppc64le
-
Red Hat Enterprise Linux for ARM 64 9 aarch64
-
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.6 aarch64
-
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.6 ppc64le
-
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.6 x86_64
-
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.6 aarch64
-
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.6 s390x
Fixes
-
BZ - 2278071
- CVE-2024-29038 tpm2-tools: arbitrary quote data may go undetected by tpm2_checkquote
-
BZ - 2278075
- CVE-2024-29039 tpm2-tools: pcr selection value is not compared with the attest
Note:
More recent versions of these packages may be available.
Click a package name for more details.
Red Hat Enterprise Linux for x86_64 9
SRPM |
tpm2-tools-5.2-4.el9.src.rpm
|
SHA-256: c02043f848a7a7e59827d7fe53304b714e4a20b05811898ecf72a0747034ec77 |
x86_64 |
tpm2-tools-5.2-4.el9.x86_64.rpm
|
SHA-256: 2f2698967c9e1741966cc107520857b1ddcbf668ae6c43621cc3d7562d418009 |
tpm2-tools-debuginfo-5.2-4.el9.x86_64.rpm
|
SHA-256: f6864b973e3d4d6b8fd897a98db04fe48180f0ae66a8c832f9d9cc5c6023f6df |
tpm2-tools-debugsource-5.2-4.el9.x86_64.rpm
|
SHA-256: 8e5e704e5472921dfb50f9904b80cba07f48b5b8fac0d9c632dba00319d3f2d6 |
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.6
SRPM |
tpm2-tools-5.2-4.el9.src.rpm
|
SHA-256: c02043f848a7a7e59827d7fe53304b714e4a20b05811898ecf72a0747034ec77 |
x86_64 |
tpm2-tools-5.2-4.el9.x86_64.rpm
|
SHA-256: 2f2698967c9e1741966cc107520857b1ddcbf668ae6c43621cc3d7562d418009 |
tpm2-tools-debuginfo-5.2-4.el9.x86_64.rpm
|
SHA-256: f6864b973e3d4d6b8fd897a98db04fe48180f0ae66a8c832f9d9cc5c6023f6df |
tpm2-tools-debugsource-5.2-4.el9.x86_64.rpm
|
SHA-256: 8e5e704e5472921dfb50f9904b80cba07f48b5b8fac0d9c632dba00319d3f2d6 |
Red Hat Enterprise Linux Server - AUS 9.6
SRPM |
tpm2-tools-5.2-4.el9.src.rpm
|
SHA-256: c02043f848a7a7e59827d7fe53304b714e4a20b05811898ecf72a0747034ec77 |
x86_64 |
tpm2-tools-5.2-4.el9.x86_64.rpm
|
SHA-256: 2f2698967c9e1741966cc107520857b1ddcbf668ae6c43621cc3d7562d418009 |
tpm2-tools-debuginfo-5.2-4.el9.x86_64.rpm
|
SHA-256: f6864b973e3d4d6b8fd897a98db04fe48180f0ae66a8c832f9d9cc5c6023f6df |
tpm2-tools-debugsource-5.2-4.el9.x86_64.rpm
|
SHA-256: 8e5e704e5472921dfb50f9904b80cba07f48b5b8fac0d9c632dba00319d3f2d6 |
Red Hat Enterprise Linux for IBM z Systems 9
SRPM |
s390x |
tpm2-tools-5.2-4.el9.s390x.rpm
|
SHA-256: 2ac7c0d4da0d1ad3aa5faf8dab06174a3146354e7400f9f86b81a0284c25ce55 |
tpm2-tools-debuginfo-5.2-4.el9.s390x.rpm
|
SHA-256: 02dfa7960739ebe78076729ead24c778cad54805a60abf83f03b82f0490b7597 |
tpm2-tools-debugsource-5.2-4.el9.s390x.rpm
|
SHA-256: 0639764145b75fa4676cdb2f437fd6e14fe01a8cbc0989f5aade9a1d86a7fe44 |
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.6
SRPM |
s390x |
tpm2-tools-5.2-4.el9.s390x.rpm
|
SHA-256: 2ac7c0d4da0d1ad3aa5faf8dab06174a3146354e7400f9f86b81a0284c25ce55 |
tpm2-tools-debuginfo-5.2-4.el9.s390x.rpm
|
SHA-256: 02dfa7960739ebe78076729ead24c778cad54805a60abf83f03b82f0490b7597 |
tpm2-tools-debugsource-5.2-4.el9.s390x.rpm
|
SHA-256: 0639764145b75fa4676cdb2f437fd6e14fe01a8cbc0989f5aade9a1d86a7fe44 |
Red Hat Enterprise Linux for Power, little endian 9
SRPM |
ppc64le |
tpm2-tools-5.2-4.el9.ppc64le.rpm
|
SHA-256: f2899b45d9edbd39e413476f5d8ed12e20f697862fd63c6824030c56e87d5dd1 |
tpm2-tools-debuginfo-5.2-4.el9.ppc64le.rpm
|
SHA-256: d6dd588553ca6827cdca4134841ed74b2c6e6fc46fadb18aa63d21b0d6696410 |
tpm2-tools-debugsource-5.2-4.el9.ppc64le.rpm
|
SHA-256: cb237ae396599975ecbd58c6396ede970b242078a50fdf8e8a77af7dff4ebbe2 |
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.6
SRPM |
ppc64le |
tpm2-tools-5.2-4.el9.ppc64le.rpm
|
SHA-256: f2899b45d9edbd39e413476f5d8ed12e20f697862fd63c6824030c56e87d5dd1 |
tpm2-tools-debuginfo-5.2-4.el9.ppc64le.rpm
|
SHA-256: d6dd588553ca6827cdca4134841ed74b2c6e6fc46fadb18aa63d21b0d6696410 |
tpm2-tools-debugsource-5.2-4.el9.ppc64le.rpm
|
SHA-256: cb237ae396599975ecbd58c6396ede970b242078a50fdf8e8a77af7dff4ebbe2 |
Red Hat Enterprise Linux for ARM 64 9
SRPM |
aarch64 |
tpm2-tools-5.2-4.el9.aarch64.rpm
|
SHA-256: 00de71ff136454d428accd7b676a6332cf7f089bd68790dec696a737d2353d6a |
tpm2-tools-debuginfo-5.2-4.el9.aarch64.rpm
|
SHA-256: 1356ce8152e0c126e08ddb754fa8ac47461fcde59e225934c57a593b8df5c880 |
tpm2-tools-debugsource-5.2-4.el9.aarch64.rpm
|
SHA-256: 1906ad08431430c01c95a7f04277073d4d33f6823ac1766aa2f5bf561dec89ce |
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.6
SRPM |
aarch64 |
tpm2-tools-5.2-4.el9.aarch64.rpm
|
SHA-256: 00de71ff136454d428accd7b676a6332cf7f089bd68790dec696a737d2353d6a |
tpm2-tools-debuginfo-5.2-4.el9.aarch64.rpm
|
SHA-256: 1356ce8152e0c126e08ddb754fa8ac47461fcde59e225934c57a593b8df5c880 |
tpm2-tools-debugsource-5.2-4.el9.aarch64.rpm
|
SHA-256: 1906ad08431430c01c95a7f04277073d4d33f6823ac1766aa2f5bf561dec89ce |
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.6
SRPM |
ppc64le |
tpm2-tools-5.2-4.el9.ppc64le.rpm
|
SHA-256: f2899b45d9edbd39e413476f5d8ed12e20f697862fd63c6824030c56e87d5dd1 |
tpm2-tools-debuginfo-5.2-4.el9.ppc64le.rpm
|
SHA-256: d6dd588553ca6827cdca4134841ed74b2c6e6fc46fadb18aa63d21b0d6696410 |
tpm2-tools-debugsource-5.2-4.el9.ppc64le.rpm
|
SHA-256: cb237ae396599975ecbd58c6396ede970b242078a50fdf8e8a77af7dff4ebbe2 |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.6
SRPM |
tpm2-tools-5.2-4.el9.src.rpm
|
SHA-256: c02043f848a7a7e59827d7fe53304b714e4a20b05811898ecf72a0747034ec77 |
x86_64 |
tpm2-tools-5.2-4.el9.x86_64.rpm
|
SHA-256: 2f2698967c9e1741966cc107520857b1ddcbf668ae6c43621cc3d7562d418009 |
tpm2-tools-debuginfo-5.2-4.el9.x86_64.rpm
|
SHA-256: f6864b973e3d4d6b8fd897a98db04fe48180f0ae66a8c832f9d9cc5c6023f6df |
tpm2-tools-debugsource-5.2-4.el9.x86_64.rpm
|
SHA-256: 8e5e704e5472921dfb50f9904b80cba07f48b5b8fac0d9c632dba00319d3f2d6 |
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.6
SRPM |
aarch64 |
tpm2-tools-5.2-4.el9.aarch64.rpm
|
SHA-256: 00de71ff136454d428accd7b676a6332cf7f089bd68790dec696a737d2353d6a |
tpm2-tools-debuginfo-5.2-4.el9.aarch64.rpm
|
SHA-256: 1356ce8152e0c126e08ddb754fa8ac47461fcde59e225934c57a593b8df5c880 |
tpm2-tools-debugsource-5.2-4.el9.aarch64.rpm
|
SHA-256: 1906ad08431430c01c95a7f04277073d4d33f6823ac1766aa2f5bf561dec89ce |
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.6
SRPM |
s390x |
tpm2-tools-5.2-4.el9.s390x.rpm
|
SHA-256: 2ac7c0d4da0d1ad3aa5faf8dab06174a3146354e7400f9f86b81a0284c25ce55 |
tpm2-tools-debuginfo-5.2-4.el9.s390x.rpm
|
SHA-256: 02dfa7960739ebe78076729ead24c778cad54805a60abf83f03b82f0490b7597 |
tpm2-tools-debugsource-5.2-4.el9.s390x.rpm
|
SHA-256: 0639764145b75fa4676cdb2f437fd6e14fe01a8cbc0989f5aade9a1d86a7fe44 |