Medium severity6.5NVD Advisory· Published Apr 16, 2025· Updated Jun 17, 2026
CVE-2025-1704
CVE-2025-1704
Description
ComponentInstaller Modification in ComponentInstaller in Google ChromeOS 15823.23.0 on Chromebooks allows enrolled users with local access to unenroll devices and intercept device management requests via loading components from the unencrypted stateful partition.
Affected products
4- Range: 15823.23.0
Patches
Vulnerability mechanics
References
2- issuetracker.google.com/issues/359915523nvdExploitIssue TrackingMailing List
- issues.chromium.org/issues/b/359915523nvdBroken Link
News mentions
0No linked articles in our index yet.