VYPR
Unrated severityNVD Advisory· Published Jan 28, 2025· Updated Jan 28, 2025

CVE-2025-23385

CVE-2025-23385

Description

In JetBrains ReSharper before 2024.3.4, 2024.2.8, and 2024.1.7, Rider before 2024.3.4, 2024.2.8, and 2024.1.7, dotTrace before 2024.3.4, 2024.2.8, and 2024.1.7, ETW Host Service before 16.43, Local Privilege Escalation via the ETW Host Service was possible

Affected products

8
  • Jetbrains/ETW Host Servicellm-create2 versions
    <16.43+ 1 more
    • (no CPE)range: <16.43
    • (no CPE)range: 0
  • Jetbrains/ReSharperllm-fuzzy2 versions
    <2024.1.7, <2024.2.8, <2024.3.4+ 1 more
    • (no CPE)range: <2024.1.7, <2024.2.8, <2024.3.4
    • (no CPE)range: 2024.3
  • Jetbrains/Riderllm-fuzzy2 versions
    <2024.1.7, <2024.2.8, <2024.3.4+ 1 more
    • (no CPE)range: <2024.1.7, <2024.2.8, <2024.3.4
    • (no CPE)range: 2024.3
  • Jetbrains/dotTracellm-fuzzy2 versions
    <2024.1.7, <2024.2.8, <2024.3.4+ 1 more
    • (no CPE)range: <2024.1.7, <2024.2.8, <2024.3.4
    • (no CPE)range: 2024.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.