A minor session credential falsification vulnerability in libtpms by Libtpms Project.

A flaw was found in libtpms in versions before 0.8.0. The TPM 2 implementation returns 2048 bit keys with ~1984 bit strength due to a bug in the TCG specification. The bug is in the key creation algorithm in RsaAdjustPrimeCandidate(), which is called before the prime number check. The highest threat from this vulnerability is to data confidentiality.


This session credential falsification vulnerability has been classified with a low base score of 2.1, a low impact score of 2.9 and a low exploitability score of 3.9.

Session Credential Falsification through Prediction

This attack targets predictable session ID in order to gain privileges. The attacker can predict the session ID used during a transaction to perform spoofing and session hijacking.


