CVE-2025-58770: TCG2 TPM RT Not Locked Issue
Published Dec 12, 2025
·Updated
APTIOV contains a vulnerability in BIOS where a user may cause “Improper Handling of Insufficient Permissions or Privileges” by local access. Successful exploitation of this vulnerability can lead to escalation of authorization and potentially impact Integrity and Availability.
Affected Software
1 affected component
AMI Aptio V>=5.0<5.041
Event History
Dec 12, 2025
CVE Published
via MITRE·03:03 PM
Data Sourced
via MITRE·03:03 PM
DescriptionWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-58770?
The severity of CVE-2025-58770 is high due to the potential for unauthorized privilege escalation.
2
How do I fix CVE-2025-58770?
To fix CVE-2025-58770, update the AMI Aptio V BIOS to version 5.041 or newer.
3
What type of vulnerability is CVE-2025-58770?
CVE-2025-58770 is classified as a local privilege escalation vulnerability due to improper handling of permissions.
4
Who is affected by CVE-2025-58770?
CVE-2025-58770 affects systems that utilize AMI Aptio V BIOS versions earlier than 5.041.
5
Can CVE-2025-58770 be exploited remotely?
No, CVE-2025-58770 requires local access to exploit the vulnerability.