What is CVE-2025-59321?
CPSD CryptoPro Secure Disk for Bitlocker versions before v7.7.4 contain a default TPM PCR policy that fails to consider the system boot state, allowing the TPM to be unsealed via an unintended execution path or from another hardware platform. Affected users must immediately update to the latest version.
Azərbaycanca: CPSD CryptoPro Secure Disk for Bitlocker proqramının köhnə versiyalarında (v7.7.4-dən əvvəl) default TPM PCR siyasəti sistemin açılış vəziyyətini nəzərə almır, bu da TPM-in nəzərdə tutulmayan icra yolu və ya başqa aparat platforması vasitəsilə açılmasına imkan verir. Bu zəiflikdən təsirlənən istifadəçilər mütləq şəkildə proqramı ən son versiyaya yeniləməlidirlər.
Related CVEs
link basis: same weakness class CWE-1188
FAQ2
Which versions of CPSD CryptoPro Secure Disk for Bitlocker are affected by CVE-2025-59321?
Versions before v7.7.4 are affected.
What should users do to mitigate this TPM vulnerability?
Users must immediately update to the latest version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.