CVE-2025-0286: High severity paragon software various products vulnerability
Various Paragon Software products contain an arbitrary kernel memory write vulnerability within biontdrv.sys that is caused by a failure to properly validate the length of user supplied data, which can allow an attacker to execute arbitrary code on the victim machine.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0286?
CVE-2025-0286 is classified as a high severity vulnerability due to its potential for allowing arbitrary code execution.
How do I fix CVE-2025-0286?
To fix CVE-2025-0286, update to the latest version of Paragon Partition Manager that includes the patch for biontdrv.sys.
What is the impact of CVE-2025-0286?
CVE-2025-0286 allows attackers to execute arbitrary code on the victim's machine by exploiting a vulnerability in kernel memory handling.
Who is affected by CVE-2025-0286?
Users of Paragon Partition Manager version 7.9.1 are affected by CVE-2025-0286.
What causes CVE-2025-0286?
CVE-2025-0286 is caused by a failure to properly validate the length of user-supplied data in the biontdrv.sys driver.