VU#431093: TCG TPM 2.0 reference code found vulnerable to information leakage and timing side-channel attacks
2026-08-18T20:52:02Z•d61babaf4d746f0fc7f21c9fda512fd58077a1e31a7bbe27bf107632bcd801c0
CVE-2026-15657CVE-2026-15658CVE-2026-15969CVE-2026-15971CVE-2026-15974CVE-2026-15976CVE-2026-16503CVE-2026-16504CVE-2026-18412CVE-2026-18497CVE-2026-6726CVE-2026-6727CVE-2026-8496BOLACERT/CCIDOROpenCartSGLangSOGoSSRFTPMXSScredential-disclosurecryptographydefault-credentialsdirectory-traversalforeUPheap-buffer-overflowremote-code-executionside-channelstb_truetypevulnerability
What happened
CERT/CC vulnerability notes describe critical security issues across TPM 2.0 reference code, OpenCart, stb_truetype, SOGo, VPS.org deployment templates, SGLang, and the foreUP golf management API. Impacts include unauthenticated or privileged remote code execution, cryptographic key and credential exposure, timing side channels, directory traversal leading to web shells, heap out-of-bounds reads, stored XSS with mailbox compromise, insecure default credentials, SSRF and local file disclosure, payment credential leakage, and broken object-level authorization. Several issues reportedly lack aика
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- certcc_vulnotes
- Record identifier
- d61babaf4d746f0fc7f21c9fda512fd58077a1e31a7bbe27bf107632bcd801c0
- Enrichment time
- 2026-08-18T20:52:02Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.