CyberRota Analysis
AI-GeneratedA timing side-channel vulnerability in the RSA OAEP decryption implementation could allow a privileged local attacker with access to the TPM command interface to exploit timing variations and recover sensitive information, potentially leading to the decryption of ciphertexts associated with TPM-managed RSA keys. This includes critical elements such as the RSA Endorsement Key and may also facilitate the forgery of TPM 2.0 attestations under specific conditions. Organizations utilizing TPM technology, particularly those managing sensitive cryptographic operations, should prioritize addressing this vulnerability.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A timing side-channel vulnerability exists in the RSA OAEP decryption implementation. A privileged local attacker with access to the TPM command interface may be able to exploit timing differences to recover information that could allow decryption of ciphertexts encrypted to TPM-managed RSA keys, including the RSA Endorsement Key (EK), including import blobs, credential blobs, and session salts. Under certain conditions, this may also enable the forgery of TPM 2.0 attestations. Refer to TCGVRT0011.