CVE-2025-70888
Published
CVSS v3
9.8
CRITICAL
CVSS v2
N/A
Affected
2
PROJECTS
Description
An issue in mtrojnar Osslsigncode affected at v2.10 and before allows a remote attacker to escalate privileges via the osslsigncode.c component
OpenSSL-based Authenticode signing for PE, CAB, CAT, MSI, APPX, and script file