CVE-2025-1122

Out-Of-Bounds Write in TPM2 Reference Library in Google ChromeOS 15753.50.0 stable on Cr50 Boards allows an attacker with root access to gain persistence and Bypass operating system verification via exploiting the NV_Read functionality during the Challenge-Response process.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:google:chrome:122.0.6261.132:*:*:*:*:*:*:*
cpe:2.3:o:google:chrome_os:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-04-15 20:15

Updated : 2025-10-06 16:56


NVD link : CVE-2025-1122

Mitre link : CVE-2025-1122

CVE.ORG link : CVE-2025-1122


JSON object : View

Products Affected

google

  • chrome_os
  • chrome
CWE
CWE-787

Out-of-bounds Write