ComponentInstaller Modification in ComponentInstaller in Google ChromeOS 15823.23.0 on Chromebooks allows enrolled users with local access to unenroll devices
and intercept device management requests via loading components from the unencrypted stateful partition.
References
| Link | Resource |
|---|---|
| https://issues.chromium.org/issues/b/359915523 | Broken Link |
| https://issuetracker.google.com/issues/359915523 | Issue Tracking Mailing List Exploit |
Configurations
History
No history.
Information
Published : 2025-04-16 23:15
Updated : 2025-07-11 14:15
NVD link : CVE-2025-1704
Mitre link : CVE-2025-1704
CVE.ORG link : CVE-2025-1704
JSON object : View
Products Affected
- chrome_os
CWE
CWE-416
Use After Free
