VU#431093: TCG TPM 2.0 reference code found vulnerable to information leakage and timing side-channel attacks

2026-08-18T20:52:02Zd61babaf4d746f0fc7f21c9fda512fd58077a1e31a7bbe27bf107632bcd801c0
CVE-2026-15657CVE-2026-15658CVE-2026-15969CVE-2026-15971CVE-2026-15974CVE-2026-15976CVE-2026-16503CVE-2026-16504CVE-2026-18412CVE-2026-18497CVE-2026-6726CVE-2026-6727CVE-2026-8496BOLACERT/CCIDOROpenCartSGLangSOGoSSRFTPMXSScredential-disclosurecryptographydefault-credentialsdirectory-traversalforeUPheap-buffer-overflowremote-code-executionside-channelstb_truetypevulnerability

What happened

CERT/CC vulnerability notes describe critical security issues across TPM 2.0 reference code, OpenCart, stb_truetype, SOGo, VPS.org deployment templates, SGLang, and the foreUP golf management API. Impacts include unauthenticated or privileged remote code execution, cryptographic key and credential exposure, timing side channels, directory traversal leading to web shells, heap out-of-bounds reads, stored XSS with mailbox compromise, insecure default credentials, SSRF and local file disclosure, payment credential leakage, and broken object-level authorization. Several issues reportedly lack aика

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
certcc_vulnotes
Record identifier
d61babaf4d746f0fc7f21c9fda512fd58077a1e31a7bbe27bf107632bcd801c0
Enrichment time
2026-08-18T20:52:02Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · VU#431093: TCG TPM 2.0 reference code found vulnerable to information leakage and timing side-channel attacks · Baitaphish