← Back

CVE-2025-1121

nvd nist
Published: Mar 7, 2025Modified: Jun 17, 2026

JSON object

Loading...
6.8
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.9 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

Privilege escalation in Installer and Recovery image handling in Google ChromeOS version 15786.48.2 on device allows an attacker with physical access to gain root code execution and potentially unenroll enterprise-managed devices via a specially crafted recovery image.

Affected (1)

Products: Google: Chrome Os
1 product
Chrome Os
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 15786.48.0

References (3)

Source: 7f6e188d-c52a-4a19-8674-3c3fa7d1fc7f
Broken LinkIssue TrackingVendor Advisory
Source: 7f6e188d-c52a-4a19-8674-3c3fa7d1fc7f
Issue TrackingVendor Advisory
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
Issue TrackingVendor Advisory

Timeline

No history available yet.