Paragon Partition Manager version 17, both community and Business versions, contain an insecure kernel resource access vulnerability facilitated by the driver not validating the MappedSystemVa pointer before passing it to HalReturnToFirmware, which can allows an attacker the ability to compromise the service.
Metrics
Affected Vendors & Products
References
History
Wed, 05 Mar 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 04 Mar 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-20 | |
Metrics |
cvssV3_1
|
Mon, 03 Mar 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Paragon Partition Manager version 17, both community and Business versions, contain an insecure kernel resource access vulnerability facilitated by the driver not validating the MappedSystemVa pointer before passing it to HalReturnToFirmware, which can allows an attacker the ability to compromise the service. | |
Title | CVE-2025-0289 | |
References |
|

Status: PUBLISHED
Assigner: certcc
Published: 2025-03-03T16:24:38.134Z
Updated: 2025-03-05T13:38:36.048Z
Reserved: 2025-01-06T19:15:26.403Z
Link: CVE-2025-0289

Updated: 2025-03-04T15:22:18.527Z

Status : Awaiting Analysis
Published: 2025-03-03T17:15:13.943
Modified: 2025-03-05T14:15:36.540
Link: CVE-2025-0289

No data.