CNNVD-202507-2427 Information

CNNVD ID

CNNVD-202507-2427

CVE-2025-2425

  • CNNVD Published: 2025-07-18

Description (Chinese)

ESET NOD32 Antivirus等都是ESET公司的产品。ESET NOD32 Antivirus是一款杀毒软件。ESET Internet Security是一款带防病毒功能的高级杀毒软件。ESET Smart Security Premium是一款包含数据加密、防病毒、防盗和密码管理等功能的网络安全软件。 ESET多款产品存在安全漏洞,该漏洞源于时间检查到使用时间的竞争条件,可能导致攻击者使用已安装的ESET安全软件清除文件系统上的任意文件内容。以下产品受到影响:ESET NOD32 Antivirus、ESET Internet Security、 ESET Smart Security Premium和ESET Security Ultimate。

Description (English)

ESET NOD32 Antivirus and others are products of ESET. ESET NOD32 Antivirus is a poison-killing software. ESET Internet Security is an advanced antivirus-resistant software. ESET Smart Security Premium is a network security software that includes data encryption, anti-virus, anti-piracy and password management functions. There is a safety gap in the multiple EET products, which stems from the competitive conditions of time-to-use check, which may lead to the attackers using the installed EEET security software to remove random document content from the file system. The following products were affected: EET NOD32 Antivirus, EET Internet Security, EET Smart Security Premium and EET Security Ultimate.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

ESET

Published

2025-07-18

Last Modified

2026-02-24

References

https://vigilance.fr/vulnerability/ESET-NOD32-Antivirus-file-deletion-dated-21-07-2025-47757 https://nvd.nist.gov/vuln/detail/CVE-2025-2425

Patch

https://www.eset.com/us/home/free-trial/

Share on: