Description

Various Paragon Software products contain an arbitrary kernel memory mapping vulnerability within biontdrv.sys that is caused by a failure to properly validate the length of user supplied data, which can allow an attacker to perform privilege escalation exploits.

INFO

Published Date :

2025-03-03T16:25:38.704Z

Last Modified :

2025-09-09T13:57:18.211Z

Source :

certcc
AFFECTED PRODUCTS

The following products are affected by CVE-2025-0285 vulnerability.

Vendors Products
Paragon-software
  • Paragon Backup \& Recovery
  • Paragon Disk Wiper
  • Paragon Drive Copy
  • Paragon Hard Disk Manager
  • Paragon Migrate Os To Ssd
  • Paragon Partition Manager

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact