CVE-2025-0286

Paragon Partition Manager version 17.9.1 contains an arbitrary kernel memory write vulnerability within biontdrv.sys that is caused by a failure to properly validate the length of user supplied data, which can allow an attacker to execute arbitrary code on the victim machine.
Configurations

No configuration.

History

27 Mar 2025, 19:15

Type Values Removed Values Added
References
  • () https://www.paragon-software.com/support/#patches -
Summary
  • (es) Paragon Partition Manager versión 7.9.1 contiene una vulnerabilidad de escritura arbitraria en la memoria del kernel dentro de biontdrv.sys que es causada por una falla al validar correctamente la longitud de los datos proporcionados por el usuario, lo que puede permitir que un atacante ejecute código arbitrario en la máquina víctima.
Summary (en) Paragon Partition Manager version 7.9.1 contains an arbitrary kernel memory write vulnerability within biontdrv.sys that is caused by a failure to properly validate the length of user supplied data, which can allow an attacker to execute arbitrary code on the victim machine. (en) Paragon Partition Manager version 17.9.1 contains an arbitrary kernel memory write vulnerability within biontdrv.sys that is caused by a failure to properly validate the length of user supplied data, which can allow an attacker to execute arbitrary code on the victim machine.

04 Mar 2025, 16:15

Type Values Removed Values Added
CWE CWE-787
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.4

03 Mar 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-03 17:15

Updated : 2025-03-27 19:15


NVD link : CVE-2025-0286

Mitre link : CVE-2025-0286

CVE.ORG link : CVE-2025-0286


JSON object : View

Products Affected

No product.

CWE
CWE-787

Out-of-bounds Write