CVE-2024-20666
MEDIUM EXPLOITEDWindows 10 1507-22H2 and Windows 11 21H2-23H2 - BitLocker Security Feature Bypass
Title source: llmExploitation Summary
CVE-2024-20666 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 3 public exploits from researchers including nnotwen, tazxtazxedu, invaderslabs.
AI-analyzed exploit summary This repository contains a PowerShell script designed to patch the Windows Recovery Environment (WinRE) to mitigate CVE-2024-20666, a BitLocker bypass vulnerability. The script checks for TPM-based protectors, verifies file versions, and applies necessary updates to the WinRE image.
Description
BitLocker Security Feature Bypass Vulnerability
Exploits (3)
This repository contains a PowerShell script designed to patch the Windows Recovery Environment (WinRE) to mitigate CVE-2024-20666, a BitLocker bypass vulnerability. The script checks for TPM-based protectors, verifies file versions, and applies necessary updates to the WinRE image.
This repository contains a PowerShell script designed to fix Windows Recovery Environment (WinRE) partition issues related to CVE-2024-20666, KB5034441, and KB5028997. The script automates the process of moving/recreating the WinRE partition to resolve update failures and BitLocker-related issues.
The repository contains a PowerShell script that checks if the Windows Recovery Environment (WinRE) has been patched against CVE-2024-20666 by comparing the installed version and build against known affected versions. It does not exploit the vulnerability but scans for its presence.
References (1)
Scores
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H