CVE-2025-0664 Information

Description

A locally authenticated privileged user can craft a malicious OpenSSL configuration file potentially leading the agent to load an arbitrary local library. This may impair endpoint defenses and allow the attacker to achieve code execution with SYSTEM-level privileges.

Reference

https://thrive.trellix.com/s/article/000014450

CNNVD-202507-2602 (Published: 2025-07-21)

Share on: