CVE-2025-0618
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Apr 23, 2025
CWE ID 94
Summary
CVE-2025-0618 is a persistent denial of service vulnerability affecting FireEye EDR agent. A malicious third party can exploit this flaw by sending a manipulated tamper protection event to the HX service, causing an exception that halts the processing of subsequent tamper protection events, even after a system reboot. The vulnerability could potentially lead to extended downtime and disruptions to security operations. FireEye has released a patch to address this issue, and users are encouraged to apply it promptly to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.