CVE-2025-0287

Publication date

2025-03-03 16:25:08

Family

certcc

State

PUBLISHED

Description

Various Paragon Software products contain a null pointer dereference vulnerability within biontdrv.sys that is caused by a lack of a valid MasterLrp structure in the input buffer, allowing an attacker to execute arbitrary code in the kernel, facilitating privilege escalation.