CVE-2025-6044 Information

Description

An Improper Access Control vulnerability in the Stylus Tools component of Google ChromeOS version 16238.64.0 on Lenovo devices allows a physical attacker to bypass the lock screen and access user files by removing the stylus while the device is closed and using the screen capture feature.

Reference

https://issues.chromium.org/issues/b/421184743 https://issuetracker.google.com/issues/421184743

CNNVD-202507-776 (Published: 2025-07-07)

Share on: