An Improper Access Control vulnerability in the Stylus Tools component of Google ChromeOS version 16238.64.0 on the garaged stylus devices allows a physical attacker to bypass the lock screen and access user files by removing the stylus while the device is closed and using the screen capture feature.
References
Configurations
No configuration.
History
09 Jul 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-07 19:15
Updated : 2025-07-09 19:15
NVD link : CVE-2025-6044
Mitre link : CVE-2025-6044
CVE.ORG link : CVE-2025-6044
JSON object : View
Products Affected
No product.
CWE
CWE-287
Improper Authentication