CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 contains a default TPM PCR policy that fails to consider the system boot state. This allows the TPM to be unsealed via an unintended execution path or from another hardware platform.
Metrics
Affected Vendors & Products
References
History
Thu, 13 Aug 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Default TPM PCR Policy Allows Unauthorized Unseal in CryptoPro Secure Disk for Bitlocker |
Thu, 13 Aug 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | CPSD CryptoPro Secure Disk TPM PCR Policy Allowing Unauthorized TPM Unseal | |
| Weaknesses | CWE-290 |
Thu, 13 Aug 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-1188 | |
| Metrics |
cvssV3_1
|
Thu, 13 Aug 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cpsd
Cpsd cryptopro Securedisk For Bitlocker |
|
| Vendors & Products |
Cpsd
Cpsd cryptopro Securedisk For Bitlocker |
Thu, 13 Aug 2026 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | CPSD CryptoPro Secure Disk TPM PCR Policy Allowing Unauthorized TPM Unseal | |
| Weaknesses | CWE-290 |
Wed, 12 Aug 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 contains a default TPM PCR policy that fails to consider the system boot state. This allows the TPM to be unsealed via an unintended execution path or from another hardware platform. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-08-12T00:00:00.000Z
Updated: 2026-08-13T15:41:46.799Z
Reserved: 2025-09-12T00:00:00.000Z
Link: CVE-2025-59321
Updated: 2026-08-13T15:41:41.002Z
Status : Received
Published: 2026-08-12T15:17:29.947
Modified: 2026-08-13T16:17:51.167
Link: CVE-2025-59321
No data.