CVE-2025-1121
6.8
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.9 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)
Description
Privilege escalation in Installer and Recovery image handling in Google ChromeOS version 15786.48.2 on device allows an attacker with physical access to gain root code
execution and potentially unenroll enterprise-managed devices via a specially crafted recovery image.
Affected (1)
References (3)
Source: 7f6e188d-c52a-4a19-8674-3c3fa7d1fc7f
Broken LinkIssue TrackingVendor Advisory
Source: 7f6e188d-c52a-4a19-8674-3c3fa7d1fc7f
Issue TrackingVendor Advisory
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
Issue TrackingVendor Advisory
Timeline
No history available yet.