THREAT OPS › Threat News › [NVD] CVE-2025-4382 (MEDIUM 5.9) — A flaw was found in systems utilizing LUKS-encrypted disks with GRUB configured for TPM-based auto-decryption. When GRUB is set to automatically decrypt disks using keys stored in the TPM, it reads the decryption key into system memory. If an attacker with physical access can cor
[NVD] CVE-2025-4382 (MEDIUM 5.9) — A flaw was found in systems utilizing LUKS-encrypted disks with GRUB configured for TPM-based auto-decryption. When GRUB is set to automatically decrypt disks using keys stored in the TPM, it reads the decryption key into system memory. If an attacker with physical access can cor
CVE-2025-4382 CVSS: 5.9 MEDIUM Published: 2025-05-09T12:15:33.657
A flaw was found in systems utilizing LUKS-encrypted disks with GRUB configured for TPM-based auto-decryption. When GRUB is set to automatically decrypt disks using keys stored in the TPM, it reads the decryption key into system memory. If an attacker with physical access can corrupt the underlying filesystem superblock, GRUB will
Indicators of compromise
- CVE-2025-4382cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-4382