CVE-2025-59319: CPSD CryptoPro Secure Disk for Bitlocker vulnerability
CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to certify the integrity of the intended boot partition and selects the first partition index matching a hardcoded type value. A crafted Linux partition could be inserted ahead of this intended target, allowing for code execution in the context of high privilege.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-59319?
CVE-2025-59319 has a risk score of 66.
How does CVE-2025-59319 affect CPSD CryptoPro Secure Disk for Bitlocker?
CVE-2025-59319 allows code execution due to failure in certifying the integrity of the boot partition.
What versions of CPSD are vulnerable to CVE-2025-59319?
CVE-2025-59319 affects CPSD CryptoPro Secure Disk for Bitlocker versions prior to 7.7.4.
How do I fix CVE-2025-59319?
To mitigate CVE-2025-59319, update CPSD CryptoPro Secure Disk for Bitlocker to version 7.7.4 or later.
What type of attack is possible due to CVE-2025-59319?
CVE-2025-59319 permits an attacker to insert a crafted Linux partition that could lead to unauthorized code execution.