Wind River Support Network

HomeDefectsLIN1019-11089
Not to be fixed

LIN1019-11089 : Security Advisory - linux - CVE-2021-46922

Created: Feb 27, 2024    Updated: Mar 18, 2024
Resolved Date: Mar 18, 2024
Found In Version: 10.19.45.1
Severity: Standard
Applicable for: Wind River Linux LTS 19
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:

KEYS: trusted: Fix TPM reservation for seal/unseal

The original patch 8c657a0590de ("KEYS: trusted: Reserve TPM for seal
and unseal operations") was correct on the mailing list:

https://lore.kernel.org/linux-integrity/20210128235621.127925-4-jarkko@kernel.org/

But somehow got rebased so that the tpm_try_get_ops() in
tpm2_seal_trusted() got lost.  This causes an imbalanced put of the
TPM ops and causes oopses on TIS based hardware.

This fix puts back the lost tpm_try_get_ops()

CREATE(Triage):(User=admin) CVE-2021-46922 (https://nvd.nist.gov/vuln/detail/CVE-2021-46922)
Live chat
Online