CVE-2025-0618

A malicious third party could invoke a persistent denial of service vulnerability in FireEye EDR agent by sending a specially-crafted tamper protection event to the HX service to trigger an exception. This exception will prevent any further tamper protection events from being processed, even after a reboot of HX.
Configurations

No configuration.

History

23 Apr 2025, 14:08

Type Values Removed Values Added
Summary
  • (es) Un tercero malintencionado podría invocar una vulnerabilidad de denegación de servicio persistente en FireEye EDR agent enviando un evento de protección contra manipulaciones especialmente manipulado al servicio HX para activar una excepción. Esta excepción impedirá que se procesen más eventos de protección contra manipulaciones, incluso después de reiniciar HX.

23 Apr 2025, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-23 07:15

Updated : 2025-04-23 14:08


NVD link : CVE-2025-0618

Mitre link : CVE-2025-0618

CVE.ORG link : CVE-2025-0618


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')