cancel
Showing results for 
Search instead for 
Did you mean: 
Reply
vegan-fanatic
Token Ring
Posts: 338
Registered: ‎05-27-2017
Location: CA
Views: 313
Message 1 of 6

tpm 1.2 security

i assume some have heard about the problems with the TPM 1.2 chip found in many Lenovo rigs

 

Microsoft has fixed the issue for bitlocker for windows 10 version 1803 so unless you are using an obsolete version of windows you might want to upgrade

 

while you are at it, make sure you have a backup of your recovery key in case of the unthinkable

 

I own: T400 T500 X220 X230 all running Windows 10 Professional
Lenovo Employee Rydeen
Lenovo Employee
Posts: 311
Registered: ‎03-03-2017
Location: JP
Views: 276
Message 2 of 6

Re: tpm 1.2 security

Dear customer,

I believe you are talking about the below security topic at Lenovo Product Security Advisory.

RSA Keys Generated by Infineon TPMs are Insecure

Please visit above site and find the appropriate actions.

vegan-fanatic
Token Ring
Posts: 338
Registered: ‎05-27-2017
Location: CA
Views: 239
Message 3 of 6

Re: tpm 1.2 security

any way to see which make/model of TPM a given machine has?

 

I have a T500 and an X220 at the moment, been thinking of a slightly more recent machine mostly for USB 3 so I can lleverage faster USB sticks etc

 

USB sticks are big enough for backups galore

 

According to tpm.msc I have a STM manufacturer which I suspect is ST microelectronics in my X220

I own: T400 T500 X220 X230 all running Windows 10 Professional
ansible212
Punch Card
Posts: 9
Registered: ‎03-28-2010
Location: GB
Views: 220
Message 4 of 6

Re: tpm 1.2 security

TPM version can be found in PSREF:

 

http://psref.lenovo.com/

Lenovo Employee Rydeen
Lenovo Employee
Posts: 311
Registered: ‎03-03-2017
Location: JP
Views: 212
Message 5 of 6

Re: tpm 1.2 security

Dear vegan-fanatic,

The specified Lenovo Product Security Advisory described the affected ThinkPd models, it described your T500 and X220 are out of scope.   As you figured out, tpm.msc can shows the equipped TPM vendor and FW version and your X220 seems to have STMicro.  This security advisory is about Infineon TPM so that your systems are safe.

vegan-fanatic
Token Ring
Posts: 338
Registered: ‎05-27-2017
Location: CA
Views: 202
Message 6 of 6

Re: tpm 1.2 security

According to tpm.msc my T500 has an Intel TPM chip, so this means there are now 3 known vendors of the logic to be wary of.

 

Intel TPM seems to be safe

STmicro seems to be safe

 

The Infineon as described in the bulletin seems to be the only logic that is affected

 

to check with windows, press win+r and in the box enter tpm.msc which will bring up the windows management snap-in directly

 

 

 

I own: T400 T500 X220 X230 all running Windows 10 Professional

Holiday Deals
HAPPENING NOW!

Get the best deals on PCs and tech now during the Holiday Sale
Shop the sale

Top Kudoed Authors