search menu icon-carat-right cmu-wordmark

CERT Coordination Center

TCG TPM 2.0 reference code found vulnerable to information leakage and timing side-channel attacks

Vulnerability Note VU#431093

Original Release Date: 2026-08-11 | Last Revised: 2026-08-11

Overview

Two vulnerabilities have been identified in the Trusted Platform Module (TPM) 2.0 reference implementation:

  1. CVE-2026-6726 – Information leakage via falsified TPM keys.
  2. CVE-2026-6727 – A timing side-channel vulnerability in RSA OAEP decryption.

An attacker with privileged access to a TPM command interface may be able to exploit these vulnerabilities by sending specially crafted TPM commands. Successful exploitation could allow the attacker to decrypt ciphertexts encrypted to affected TPM-managed RSA keys, including the RSA Endorsement Key (EK), or obtain credentials for falsified TPM keys, enabling forged TPM 2.0 attestations.
These vulnerabilities are also documented by the Trusted Computing Group (TCG) in advisories - TCGVRT010 and TCGVRT0011:

Description

Trusted Platform Module (TPM) technology provides hardware-backed cryptographic services for modern computing platforms. TPMs are designed to resist tampering and may be implemented as discrete chips, integrated hardware, firmware-based TPMs (fTPMs), or software implementations used in cloud and virtualized environments.
The Trusted Computing Group (TCG) maintains the TPM specifications and publishes a reference implementation to assist vendors in developing TPM-compliant products.

Two vulnerabilities were identified in the TPM 2.0 reference implementation.

CVE-2026-6727
A timing side-channel vulnerability exists in the RSA OAEP decryption implementation. A privileged local attacker with access to the TPM command interface may be able to exploit timing differences to recover information that could allow decryption of ciphertexts encrypted to TPM-managed RSA keys, including the RSA Endorsement Key (EK), including import blobs, credential blobs, and session salts. Under certain conditions, this may also enable the forgery of TPM 2.0 attestations.

CVE-2026-6726
An information leakage vulnerability could allow a privileged local attacker to obtain credentials from a TPM-aware Certificate Authority (CA) for a falsified TPM key, such as an Attestation Key (AK), DevID key, or TLS authentication key. This could enable the creation of fraudulent TPM 2.0 attestations using the forged key.

Both vulnerabilities require privileged access to the TPM command interface. Multiple vendors have released firmware and software updates incorporating fixes from the updated TPM 2.0 reference implementation.

Impact

Successful exploitation requires privileged local access to a TPM command interface. Depending on the vulnerability exploited, an attacker may be able to:
- Decrypt ciphertexts encrypted to the TPM-managed RS keys, including the RSA Endorsement Key (EK), , including credential blobs, import blobs, and session salts.
- Obtain credentials for falsified TPM keys.
- Produce fraudulent TPM 2.0 attestations that appear to originate from a legitimate TPM.

The overall impact depends on the affected TPM implementation and how TPM-based attestation and key management are used by the platform.

Solution

The vulnerabilities originate in the TPM 2.0 reference implementation, and TPM vendors have incorporated the corresponding fixes into updated firmware and software releases. Users should install TPM firmware updates, operating system updates, or software patches provided by their platform or TPM vendor.

Cloud providers using software-based TPM implementations may also have deployed updates. Customers should consult their cloud provider's guidance to determine whether any additional action is required. See the Vendor Information section for product-specific remediation guidance.

Acknowledgements

Thanks to security researchers Liran Perez, Zecharye Galitzky, Shai Sarfati, and Yanai Moyal from Intel for reporting these vulnerabilities. Thanks to members of the Trusted Computing Group’s Vulnerability Response Team, TCG VRT, for working with CERT/CC towards this multi-party vulnerability disclosure. This document was written by Vijay Sarvepalli.

Vendor Information

431093
 

AMD Affected

Notified:  2026-04-20 Updated: 2026-08-11

Statement Date:   August 03, 2026

CVE-2026-6726 Affected
Vendor Statement:
AMD produces an fTPM and is impacted by this issue.
CVE-2026-6727 Affected
Vendor Statement:
AMD produces an fTPM and is impacted by this issue.

Intel Affected

Notified:  2026-04-20 Updated: 2026-08-11

Statement Date:   August 07, 2026

CVE-2026-6726 Affected
CVE-2026-6727 Affected

Vendor Statement

We have not received a statement from the vendor.

Absolute Software Not Affected

Notified:  2026-05-19 Updated: 2026-08-11

Statement Date:   July 23, 2026

CVE-2026-6726 Not Affected
Vendor Statement:
Absolute products are not affected because they do not rely on the impacted TPM 2.0 reference implementation.
CVE-2026-6727 Not Affected
Vendor Statement:
Absolute products are not affected because they do not rely on the impacted TPM 2.0 reference implementation.

Ampere Computing. Not Affected

Notified:  2026-05-19 Updated: 2026-08-11

Statement Date:   May 19, 2026

CVE-2026-6726 Not Affected
CVE-2026-6727 Not Affected

Vendor Statement

We have not received a statement from the vendor.

Meta Not Affected

Notified:  2026-05-19 Updated: 2026-08-11

Statement Date:   August 04, 2026

CVE-2026-6726 Not Affected
CVE-2026-6727 Not Affected

Vendor Statement

We have not received a statement from the vendor.

libtpms IBM sponsored Unknown

Notified:  2026-04-27 Updated: 2026-08-11

Statement Date:   August 04, 2026

CVE-2026-6726 Unknown
Vendor Statement:
At least libtpms versions 0.8.5, 0.9.0, and 0.10.0 are NOT affected by this vulnerability following results from running test cases provided as part of VRT0010. The following commit has resolved this issue previously: https://github.com/stefanberger/libtpms/commit/17255da54cf8354d02369f1323dc50cfb87e2bf4 backport: https://github.com/stefanberger/libtpms/commit/33a03986e0a09d This patch has been applied to the above mentioned versions >=0.8.5, >=0.9.0, and >=0.10.0 and resolved CVE-2021-3746.
CVE-2026-6727 Unknown
Vendor Statement:
If libtpms was configured with --disable-use-openssl-functions then the vulnerability appears. However, a typical build of libtpms will use OpenSSL functions for RSA en- and decryption rather than the provided TCG implementation where the vulnerability exists. A patch will be provided and applied to all affected branches. I will notify package maintainers of various distros about this weakness and tell them that there's a patch available but since no known builds are done with --disable-use-openssl-functions, I will likely not tag a new version in the various libtpms branches.

Alibaba Group Holding Limited Unknown

Notified:  2026-05-19 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Amazon Unknown

Notified:  2026-04-27 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

American Megatrends Incorporated (AMI) Unknown

Notified:  2026-05-19 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Ant Group Unknown

Notified:  2026-05-19 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

ARM Limited Unknown

Notified:  2026-05-19 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

AWS Unknown

Notified:  2026-04-27 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Broadcom Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Dell Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

FujiFilm Corporation Unknown

Notified:  2026-05-19 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Google Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Hewlett Packard Enterprise Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

HP Inc. Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Infineon Technologies AG Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Juniper Networks Unknown

Notified:  2026-05-19 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Lenovo Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Marvell Semiconductor Unknown

Notified:  2026-05-19 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

MediaTek Unknown

Notified:  2026-05-19 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Microsoft Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Nations Technologies Inc. Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

NSING Technologies Singapore Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Nuvoton Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

NVIDIA Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

NXP Semiconductors Inc. Unknown

Notified:  2026-05-19 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Qualcomm Unknown

Notified:  2026-04-27 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

SealSQ Unknown

Notified:  2026-05-19 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

STMicroelectronics Unknown

Notified:  2026-04-20 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Toyota Woven Vulnerability Unit Unknown

Notified:  2026-05-19 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

Trusted Computing Group Unknown

Notified:  2026-07-23 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

VMware Unknown

Notified:  2026-04-27 Updated: 2026-08-11

CVE-2026-6726 Unknown
CVE-2026-6727 Unknown

Vendor Statement

We have not received a statement from the vendor.

View all 35 vendors View less vendors


Other Information

CVE IDs: CVE-2026-6726 CVE-2026-6727
API URL: VINCE JSON | CSAF
Date Public: 2026-08-11
Date First Published: 2026-08-11
Date Last Updated: 2026-08-11 15:12 UTC
Document Revision: 1

Sponsored by CISA.