In JetBrains ReSharper before 2024.3.4, 2024.2.8, and 2024.1.7, Rider before 2024.3.4, 2024.2.8, and 2024.1.7, dotTrace before 2024.3.4, 2024.2.8, and 2024.1.7, ETW Host Service before 16.43, Local Privilege Escalation via the ETW Host Service was possible
History

Tue, 28 Jan 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 28 Jan 2025 16:15:00 +0000

Type Values Removed Values Added
Description In JetBrains ReSharper before 2024.3.4, 2024.2.8, and 2024.1.7, Rider before 2024.3.4, 2024.2.8, and 2024.1.7, dotTrace before 2024.3.4, 2024.2.8, and 2024.1.7, ETW Host Service before 16.43, Local Privilege Escalation via the ETW Host Service was possible
Weaknesses CWE-114
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: JetBrains

Published: 2025-01-28T16:01:55.084Z

Updated: 2025-01-28T16:26:10.127Z

Reserved: 2025-01-15T11:51:10.292Z

Link: CVE-2025-23385

cve-icon Vulnrichment

Updated: 2025-01-28T16:25:00.978Z

cve-icon NVD

Status : Received

Published: 2025-01-28T16:15:41.377

Modified: 2025-01-28T16:15:41.377

Link: CVE-2025-23385

cve-icon Redhat

No data.