CVE-2026-6726

An information leakage vulnerability was reported in the TCG TPM 2.0 reference code that could allow a local attacker with elevated privileges to obtain a credential from a TPM-aware CA for a falsified TPM key (such as an Attestation Key, DevID Key or TLS authentication key) and falsify other TPM 2.0 attestations with this key. See also TCG VRT0010.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-11 16:17

Updated : 2026-09-08 14:09


NVD link : CVE-2026-6726

Mitre link : CVE-2026-6726

CVE.ORG link : CVE-2026-6726


JSON object : View

Products Affected

No product.

CWE
CWE-704

Incorrect Type Conversion or Cast