CVE Database
/

CVE-2025-0286

Back to search

CVE-2025-0286

Published: Mar 3, 2025

Modified: Sep 9, 2025

PUBLISHED

Description

Various Paragon Software products contain an arbitrary kernel memory write vulnerability within biontdrv.sys that is caused by a failure to properly validate the length of user supplied data, which can allow an attacker to execute arbitrary code on the victim machine.

VendorProductVersions

Paragon Software

Partition Manager

affected
15 - <= 17.39

Paragon Software

Hard Disk Manager

affected
15 - <= 17.39

Paragon Software

Backup and Recovery

affected
15 - <= 17.39

Paragon Software

Drive Copy

affected
15 - <= 16

Paragon Software

Disk Wiper

affected
15 - <= 16

Paragon Software

Migrate OS to SSD

affected
4 - <= 5

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now