CVE-2025-23149 | Linux Kernel up to 6.6.87/6.12.23/6.13.11/6.14.2 tpm drivers/i2c/i2c-core.h tpm_find_get_ops random values (Nessus ID 240657 / WID-SEC-2025-0922)
A vulnerability marked as problematic has been reported in Linux Kernel up to 6.6.87/6.12.23/6.13.11/6.14.2. This affects the function tpm_find_get_ops in the library drivers/i2c/i2c-core.h of the component tpm. Performing a manipulation results in insufficiently random values.
This vulnerability is identified as CVE-2025-23149. The attack can only be performed from the local network. There is not any exploit available.
It is suggested to upgrade the affected component.