CVE-2024-20665

CVSS 3.1 Score 6.1 of 10 (medium)

Details

Published Apr 9, 2024
Updated: Apr 10, 2024
CWE ID 693

Summary

CVE-2024-20665 is a newly disclosed vulnerability affecting Microsoft BitLocker, a full disk encryption feature. Hackers can exploit this security flaw to bypass BitLocker's protections and gain unauthorized access to encrypted data. The vulnerability exists due to an issue in the way BitLocker handles certain encryption keys, allowing unprivileged users to access encrypted data without proper authorization. Mitigation measures include updating to the latest version of BitLocker and implementing strong access controls to prevent unauthorized access. This vulnerability can lead to significant data loss and privacy breaches if exploited successfully.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share