In JetBrains ReSharper before 2024.3.4, 2024.2.8, and 2024.1.7, Rider before 2024.3.4, 2024.2.8, and 2024.1.7, dotTrace before 2024.3.4, 2024.2.8, and 2024.1.7, ETW Host Service before 16.43, Local Privilege Escalation via the ETW Host Service was possible
History

Mon, 12 Jan 2026 19:00:00 +0000

Type Values Removed Values Added
First Time appeared Jetbrains etw Host Service
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:jetbrains:dottrace:*:*:*:*:*:*:*:*
cpe:2.3:a:jetbrains:etw_host_service:*:*:*:*:*:*:*:*
cpe:2.3:a:jetbrains:resharper:*:*:*:*:*:*:*:*
cpe:2.3:a:jetbrains:rider:*:*:*:*:*:*:*:*
Vendors & Products Jetbrains etw Host Service

Tue, 28 Jan 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 28 Jan 2025 16:15:00 +0000

Type Values Removed Values Added
Description In JetBrains ReSharper before 2024.3.4, 2024.2.8, and 2024.1.7, Rider before 2024.3.4, 2024.2.8, and 2024.1.7, dotTrace before 2024.3.4, 2024.2.8, and 2024.1.7, ETW Host Service before 16.43, Local Privilege Escalation via the ETW Host Service was possible
Weaknesses CWE-114
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: JetBrains

Published: 2025-01-28T16:01:55.084Z

Updated: 2025-01-28T16:26:10.127Z

Reserved: 2025-01-15T11:51:10.292Z

Link: CVE-2025-23385

cve-icon Vulnrichment

Updated: 2025-01-28T16:25:00.978Z

cve-icon NVD

Status : Analyzed

Published: 2025-01-28T16:15:41.377

Modified: 2026-01-12T18:53:54.620

Link: CVE-2025-23385

cve-icon Redhat

No data.