CVE-2025-59325
Received
Received - Intake
CryptoPro Secure Disk for Bitlocker initramfs Plaintext Exposure
Vulnerability report for CVE-2025-59325, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.
Publication date: 2026-08-12
Last updated on: 2026-08-12
Assigner: MITRE
Description
Description
CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to encrypt the initramfs contents, allowing for the offline recovery of secrets and cryptographic details.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| cpsd | crypto_pro_secure_disk_for_bitlocker | to 7.7.4 (exc) |
| cpsd | cryptopro_secure_disk_for_bitlocker | to 7.7.4 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |