Story thread · 2 reports / 2 sources

AMD Acknowledges TPM Vulnerability, but Everything Is Now Patched

techpowerup.com · 6h · first report

AMD Acknowledges TPM Vulnerability, but Everything Is Now Patched

How the coverage leans

Across 2 sources · syndicated copies counted once

AMD has acknowledged today that a new vulnerability in the trusted platform module has been found, but fortunately, it was patched before the public announcement. According to AMD, a potential out-of-bounds (OOB) read was present in the TPM 2.0 reference implementation, which could send malicious commands to TPM 2.0 and completely bypass its functionality. If an attacker were able to access and even disable the TPM, all digital signing and encryption would be compromised, earning this vulnerability a very high severity score. Reported under CVE-2026-6726 with a CVSS score of 8.5, and the second being CVE-2026-6727 with a CVSS score of 8.3, these attacks affected every AMD Ryzen CPU from the 3000 to 9000 series of desktop processors. Intel security researchers spotted the issue and reported it to the Trusted Computing Group (TCG) and its Vulnerability Response Team (VRT). AMD has been working with motherboard vendors to ship updates and secure the platforms. Motherboard OEMs have been d

The coverage

  1. AMD's TPM implementation includes two high-severity flaws, but fixes have been available since May

    techspot.com · 2h

The conversation · 0

Sign in to join the conversation.

No comments yet — start the thread.