CVE-2025-20936

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Apr 8, 2025

Summary

CVE-2025-20936 is a vulnerability affecting HDCP trustlets before the SMR Apr-2025 Release 1. This issue involves improper access control, allowing local attackers with shell privileges to escalate their privileges to root level. The HDCP trustlet, designed to protect digital content, inadvertently provides a pathway for attackers to bypass security restrictions and gain elevated access to the system. This vulnerability poses a significant risk to systems where it is present, enabling attackers to compromise critical system components with serious consequences.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share