CVE-2025-0286

CVSS 3.1 Score 8.4 of 10 (high)

Details

Published Mar 3, 2025
Updated: Mar 4, 2025
CWE ID 787

Summary

CVE-2025-0286 is a kernel memory write vulnerability affecting Paragon Partition Manager version 7.9.1. An attacker can exploit this vulnerability, located in the biontdrv.sys driver, by supplying incorrectly validated data. The consequence is the ability to write arbitrary data to kernel memory, leading to potential code execution on the victim's machine. This issue poses a significant risk, as it can enable attackers to gain elevated privileges and control over the system. To mitigate the risk, users are advised to update to the latest patched version of Paragon Partition Manager.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share