CVE-2025-2884Patch

MEDIUMCVSS 6.6 · MEDIUM

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch affected systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

TCG TPM2.0 Reference implementation's CryptHmacSign helper function is vulnerable to Out-of-Bounds read due to the lack of validation the signature scheme with the signature key's algorithm. See Errata Revision 1.83 and advisory TCGVRT0009 for TCG standard TPM2.0

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-125

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 7 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 5 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 4d ago at 2 mentions (2026-02-11); latest day: 1
  • 7 total mentions across 5 days

Deep dive

Activity timeline7 mentions / 5d
01122Mentions · 2026-02-11: 2Mentions · 2026-03-31: 1Mentions · 2026-04-21: 1Mentions · 2026-04-22: 2Mentions · 2026-08-05: 1Active Exploitation · 2026-04-22: 1Patch / Workaround · 2026-03-31: 1Patch / Workaround · 2026-04-21: 1Patch / Workaround · 2026-08-05: 1Technical Details · 2026-02-11: 1Technical Details · 2026-03-31: 1Technical Details · 2026-04-21: 1Technical Details · 2026-04-22: 202-1103-3104-2104-2208-05
Signal classification4 categories
Patch
457.1%
Disclosure
114.3%
General
114.3%
Active Exploitation
114.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-112
Disclosure1General1
2026-03-311
Patch1
2026-04-211
Patch1
2026-04-222
Active Exploitation1Patch1
2026-08-051
Patch1
Full discourse7 posts
  • w@w_sted
    Patch

    @TheeEvolutionYT @HeyImAlaix Well yeah, that depends on if your motherboard has the CVE-2025-2884 fix, if it does just flash old version then flash new.

    Post summary

    The tweet advises users to apply a firmware update by flashing the old version and then the new one if their motherboard includes the CVE‑2025‑2884 fix.

    00002151
    76 followersView on X
  • 𝐹𝓊𝒸𝒽𝓈𝒾 🦊@derFuchsi
    Patch

    @GoldenerReiter2 Grad mal online gecheckt. Vielleicht ist Bios Update doch wichtig😅. Keine Ahnung ob es das ist aber irgendwas mit TPM ist ja das Problem "Fix TPM2.0’s out-of-bounds read vulnerability (CVE-2025-2884)"

    Post summary

    The user references a BIOS update as a potential fix for the TPM2.0 out‑of‑bounds read vulnerability (CVE-2025-2884) and identifies the vulnerability type, but provides no PoC, exploit, or evidence of active attacks.

    10010209
    1.1K followersView on X
  • kawn@kawn2020
    General

    #windowsupdate #microsoft ■悪用や脆弱性の詳細が一般へ公開されていることを確認済み:7 件 ・CVE-2025-2884 Cert CC: CVE-2025-2884 TPM2.0 リファレンス実装における境界外読み取りの脆弱性 ・CVE-2026-21510 Windows シェル セキュリティ機能のバイパスの脆弱性 (つづく…)

    Post summary

    The tweet lists two CVEs and notes that exploitation details are publicly available, but provides no additional technical or actionable information.

    1000097
    89 followersView on X
  • kawn@kawn2020
    Disclosure

    #windowsupdate #microsoft ■既存の脆弱性情報の更新 ・CVE-2016-9535 MITRE CVE-2016-9535: LibTIFF ヒープ バッファ オーバーフローの脆弱性 ・CVE-2025-2884 Cert CC: CVE-2025-2884 TPM2.0 リファレンス実装における境界外読み取りの脆弱性 ■新規セキュリティアドバイザリの公開 なし

    Post summary

    The post provides updates on existing Windows Update CVEs with technical details, but does not mention exploits, patches, or active use.

    1000070
    89 followersView on X
  • Security Arsenal, LLC@SecurityAr58409
    Patch

    🔒 #CyberSecurity CVE-2025-2884: Siemens TPM 2.0 Out-of-Bounds Read — Detection and Remediation G… "Critical Siemens TPM 2.0 flaw (CVE-2025-2884) exposes IPCs and controllers to…" 🔗 https://securityarsenal.com/blog/cve-2025-2884-siemens-tpm-20-out-of-bounds-read-detection-and-remediation-guide #CyberSecurity #ThreatIntel #managedsoc #mdr #securitymonitoring

    Post summary

    The post highlights detection and remediation steps for the Siemens TPM 2.0 out‑of‑bounds read vulnerability, providing some technical detail but no evidence of active exploitation or a published patch.

    00000270
    11 followersView on X
  • Aviatrix Threat Research Center@aviatrixtrc
    Active Exploitation

    TRC analysis shows attackers exploiting CVE-2025-2884 in Siemens TPM 2.0 implementations can access sensitive memory and escalate privileges locally. The vulnerability affects critical SIMATIC industrial systems. Runtime segmentation helps limit blast radius when foundational security components are compromised. #Vulnerability 🔗 Full TRC analysis: https://aviatrix.ai/threat-research-center/icsa-26-111-01-cve-2025-2884

    Post summary

    The analysis confirms that CVE-2025-2884 is actively exploited in Siemens TPM 2.0 implementations, enabling local privilege escalation and sensitive memory access, with runtime segmentation mitigating the blast radius.

    00000274
    1.9K followersView on X
  • WindowsForum@windowsforum
    Patch

    🪟 TPM CVE time again: out-of-bounds in CryptHmacSign = TPM info leak/DoS, so your “trusted” hardware can still faceplant. Patch OT firmware/device-by-device—because One-Size-Doesn’t-Work. https://windowsforum.com/threads/siemens-tpm-2-0-cve-2025-2884-patch-firmware-and-plan-ot-device-remediation.414563/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #IndustrialCybersecurity #TpmSecurity #Cve20252884 #SiemensSimatic https://t.co/qZPuSnoIzI

    Post summary

    The tweet reports a TPM CVE‑2025‑2884 that causes an out‑of‑bounds leak/DoS and emphasizes applying device‑specific firmware patches to mitigate the risk.

    0000091
    1.1K followersView on X

Explore more