CVE-2025-0567: Epic Games Launcher Installer profapi.dll untrusted search path
A vulnerability classified as problematic was found in Epic Games Launcher up to 17.2.1. This vulnerability affects unknown code in the library profapi.dll of the component Installer. The manipulation leads to untrusted search path. Attacking locally is a requirement. The complexity of an attack is rather high. The exploitation appears to be difficult.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0567?
CVE-2025-0567 is classified as a problematic vulnerability.
What software is affected by CVE-2025-0567?
CVE-2025-0567 affects Epic Games Launcher versions up to and including 17.2.1.
How can CVE-2025-0567 be exploited?
CVE-2025-0567 can be exploited through untrusted search path manipulation, requiring local access.
How do I fix CVE-2025-0567?
To mitigate CVE-2025-0567, update the Epic Games Launcher to a version newer than 17.2.1.
What component of the Epic Games Launcher is affected by CVE-2025-0567?
CVE-2025-0567 affects the profapi.dll library in the Installer component.