• Microsoft releases PowerShell script to address Windows Bitlocker vulnerability

    Home » Forums » Cyber Security Information and Advisories » Code Red – Security/Privacy advisories » Microsoft releases PowerShell script to address Windows Bitlocker vulnerability

    Author
    Topic
    #2544348

    https://www.ghacks.net/2023/03/17/microsoft-releases-powershell-script-to-address-windows-bitlocker-vulnerability/

    Microsoft has released a PowerShell script for Windows 10 and 11 devices to address a BitLocker security feature bypass vulnerability.

    Microsoft confirmed the issue on November 8, 2022. It is tracked as CVE-2022-41099. Successful exploitation of the issue allows attackers to bypass BitLocker Device Encryption protections on the system storage device, according to Microsoft’s description. Physical access to the device is required to exploit the vulnerability and access the encrypted data.

    Microsoft released a security update for the issue, but system administrators had to install it to the Windows Recovery Environment manually up until now…

    KB5025175: Updating the WinRE partition on deployed devices to address security vulnerabilities inโ€ฏCVE-2022-41099

    • This topic was modified 2 years, 1 month ago by Alex5723.
    1 user thanked author for this post.
    b
    Viewing 2 reply threads
    Author
    Replies
    • #2544362

      Enough businesses complained.

      Susan Bradley Patch Lady/Prudent patcher

    • #2544498

      I have Bitlocker disabled in services.ย  No one has physical access to my machines, and in my view there is simply no need to add a layer of complexity to my file system.

      Always create a fresh drive image before making system changes/Windows updates; you may need to start over!
      We all have our own reasons for doing the things that we do with our systems; we don't need anyone's approval, and we don't all have to do the same things.
      We were all once "Average Users".

    • #2546839

      I assume that KB5025175 won’t be offered as part of the March updates?

       

      regards

       

      GeoffB

    Viewing 2 reply threads
    Reply To: Reply #2546839 in Microsoft releases PowerShell script to address Windows Bitlocker vulnerability

    You can use BBCodes to format your content.
    Your account can't use all available BBCodes, they will be stripped before saving.

    Your information:




    Cancel