Various Paragon Software products contain an insecure kernel resource access vulnerability facilitated by the driver not validating the MappedSystemVa pointer before passing it to HalReturnToFirmware, which can allows an attacker the ability to compromise the service.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-03-03 17:15
Updated : 2025-06-25 16:49
NVD link : CVE-2025-0289
Mitre link : CVE-2025-0289
CVE.ORG link : CVE-2025-0289
JSON object : View
Products Affected
paragon-software
- paragon_drive_copy
- paragon_disk_wiper
- paragon_migrate_os_to_ssd
- paragon_backup_\&_recovery
- paragon_partition_manager
- paragon_hard_disk_manager
CWE
