Metrics
Affected Vendors & Products
Mon, 14 Apr 2025 20:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Paragon Partition Manager version 17.9.1 contains an arbitrary kernel memory vulnerability facilitated by the memmove function, which does not validate or sanitize user controlled input, allowing an attacker the ability to write arbitrary kernel memory and perform privilege escalation. | Various Paragon Software products contain an arbitrary kernel memory vulnerability within biontdrv.sys, facilitated by the memmove function, which does not validate or sanitize user controlled input, allowing an attacker the ability to write arbitrary kernel memory and perform privilege escalation. |
Thu, 27 Mar 2025 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Paragon Partition Manager version 7.9.1 contains an arbitrary kernel memory vulnerability facilitated by the memmove function, which does not validate or sanitize user controlled input, allowing an attacker the ability to write arbitrary kernel memory and perform privilege escalation. | Paragon Partition Manager version 17.9.1 contains an arbitrary kernel memory vulnerability facilitated by the memmove function, which does not validate or sanitize user controlled input, allowing an attacker the ability to write arbitrary kernel memory and perform privilege escalation. |
Tue, 25 Mar 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Wed, 12 Mar 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-131 | |
Metrics |
cvssV3_1
|
Wed, 05 Mar 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 04 Mar 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-131 | |
Metrics |
cvssV3_1
|
Mon, 03 Mar 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Paragon Partition Manager version 7.9.1 contains an arbitrary kernel memory vulnerability facilitated by the memmove function, which does not validate or sanitize user controlled input, allowing an attacker the ability to write arbitrary kernel memory and perform privilege escalation. | |
Title | CVE-2025-0288 | |
References |
|

Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2025-04-15T15:16:49.889Z
Reserved: 2025-01-06T19:15:19.554Z
Link: CVE-2025-0288

Updated: 2025-03-04T15:20:17.348Z

Status : Awaiting Analysis
Published: 2025-03-03T17:15:13.823
Modified: 2025-04-14T21:15:17.943
Link: CVE-2025-0288

No data.