First published: Wed Apr 23 2025(Updated: )
A malicious third party could invoke a persistent denial of service vulnerability in FireEye EDR agent by sending a specially-crafted tamper protection event to the HX service to trigger an exception. This exception will prevent any further tamper protection events from being processed, even after a reboot of HX.
Credit: trellixpsirt@trellix.com
Affected Software | Affected Version | How to fix |
---|---|---|
FireEye EDR agent |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-0618 is classified as a persistent denial of service vulnerability.
To fix CVE-2025-0618, update your FireEye EDR agent to the latest version released by the vendor.
CVE-2025-0618 affects the FireEye EDR agent.
While CVE-2025-0618 primarily causes denial of service, it may indirectly lead to data loss through unprocessed events.
Mitigating the impact of CVE-2025-0618 involves implementing monitoring and response strategies to detect and handle malicious tamper protection events promptly.