CVE-2025-0618

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Apr 23, 2025
CWE ID 94

Summary

CVE-2025-0618 is a persistent denial of service vulnerability affecting FireEye EDR agent. A malicious third party can exploit this flaw by sending a manipulated tamper protection event to the HX service, causing an exception that halts the processing of subsequent tamper protection events, even after a system reboot. The vulnerability could potentially lead to extended downtime and disruptions to security operations. FireEye has released a patch to address this issue, and users are encouraged to apply it promptly to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share