CVE-2025-59320

CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 stores TPM2.0 secrets in a serialized format within unused disk sectors. An unauthenticated attacker with physical access to the system disk can recover this information and craft an environment to unseal the TPM.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-12 15:17

Updated : 2026-08-31 19:33


NVD link : CVE-2025-59320

Mitre link : CVE-2025-59320

CVE.ORG link : CVE-2025-59320


JSON object : View

Products Affected

No product.

CWE
CWE-922

Insecure Storage of Sensitive Information