Side-Channel Attack Vulnerability in Trusted Platform Modules by Various Vendors
CVE-2026-6923
3.8LOW
What is CVE-2026-6923?
A vulnerability exists within certain Trusted Platform Modules (TPMs) that can be exploited through a side-channel attack. This type of attack necessitates physical access to the TPM hardware and can allow attackers to extract sensitive Elliptic Curve Diffie-Hellman (ECDH) keys. Such exploitation poses significant security risks, particularly for cryptographic operations relying on these keys. Organizations using impacted TPM versions must take measures to enhance security and mitigate potential threats.
Affected Version(s)
NPCT7xx all versions below 7.2.4.0
