[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248585

 
 

909

 
 

195621

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

BitLocker Security Feature Bypass Vulnerability - CVE-2024-20666

ID: oval:org.secpod.oval:def:96653Date: (C)2024-01-10   (M)2024-04-17
Class: VULNERABILITYFamily: windows




BitLocker Security Feature Bypass Vulnerability. A successful attacker could bypass the BitLocker Device Encryption feature on the system storage device. An attacker with physical access to the target could exploit this vulnerability to gain access to encrypted data. The exploit is only possible with the winre.wim on the recovery partition of the device. A BitLocker encrypted drive cannot be accessed via an arbitrary WinRE WIM file hosted on an external drive. To exploit the vulnerability the attacker needs to know the TPM PIN if the user is protected by the BitLocker TPM+PIN.

Platform:
Microsoft Windows 10
Microsoft Windows 11
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server
Reference:
CVE-2024-20666
CVE    1
CVE-2024-20666
CPE    16
cpe:/o:microsoft:windows_10:1809::x64
cpe:/o:microsoft:windows_10:1809::x86
cpe:/o:microsoft:windows_server_2016:::x64
cpe:/o:microsoft:windows_10:1809
...

© SecPod Technologies