THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-4382 (MEDIUM 5.9) — A flaw was found in systems utilizing LUKS-encrypted disks with GRUB configured for TPM-based auto-decryption. When GRUB is set to automatically decrypt disks using keys stored in the TPM, it reads the decryption key into system memory. If an attacker with physical access can cor

[NVD] CVE-2025-4382 (MEDIUM 5.9) — A flaw was found in systems utilizing LUKS-encrypted disks with GRUB configured for TPM-based auto-decryption. When GRUB is set to automatically decrypt disks using keys stored in the TPM, it reads the decryption key into system memory. If an attacker with physical access can cor

lownvdPublished 2025-05-09

CVE-2025-4382 CVSS: 5.9 MEDIUM Published: 2025-05-09T12:15:33.657

A flaw was found in systems utilizing LUKS-encrypted disks with GRUB configured for TPM-based auto-decryption. When GRUB is set to automatically decrypt disks using keys stored in the TPM, it reads the decryption key into system memory. If an attacker with physical access can corrupt the underlying filesystem superblock, GRUB will

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-4382