PT-2023-28886 · Pcr14 · Pcr14

Ilay Levi

·

Publicado

2023-09-20

·

Atualizado

2026-02-06

·

CVE-2023-43630

CVSS v3.1

8.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description The issue concerns a problem where PCR14 is not in the list of PCRs that seal/unseal the "vault" key. Due to a change implemented in a commit, fixing this issue alone would not solve the problem of the config partition not being measured correctly. The "vault" key is sealed/unsealed with SHA1 PCRs instead of SHA256. This issue was somewhat mitigated because all PCR extend functions updated both SHA256 and SHA1 values for a given PCR ID. However, the change in the commit means that only the SHA256 instance of PCR14 is updated, which would still not measure changes to the config partition even if PCR14 were added to the list of PCRs sealing/unsealing the "vault" key. An attacker could modify the config partition without triggering the measured boot, potentially gaining full control over the device with access to the encrypted "vault".
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insufficiently Protected Credentials

Insecure Storage of Sensitive Information

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-43630
GHSA-5JVG-8J6F-VPMC
GHSA-PHCG-H58R-GMCQ
GO-2026-4430
SUSE-SU-2026:0403-1

Produtos afetados

Pcr14