CVE-2025-2425 Details
Description
Time-of-check to time-of-use race condition vulnerability potentially allowed an attacker to use the installed ESET security software to clear the content of an arbitrary file on the file system.
A time-of-check to time-of-use race condition vulnerability has been identified in multiple ESET security products for Windows. This vulnerability could potentially allow an attacker to use the ESET software to delete the contents of an arbitrary file on the file system. The issue arises from the way the NTFS file system handles file names, enabling the swapping of file handles just before a file is cleared, thereby exploiting the vulnerability.
ESET has released fixed builds for all affected products. Users are advised to upgrade to the latest version. The updated versions are available on the ESET website or through the ESET Repository.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Jul 18, 2025CISA-ADP
Assessed Jul 18, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://support.eset.com/en/ca8840-eset-customer-advisory-toctou-race-condition-vulnerability-in-eset-products-on-windows-fixed | [email protected] | AdvisoryRemedyVendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-367 | Time-of-check Time-of-use (TOCTOU) Race Condition | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| ESET NOD32 Antivirus | <= 18.1.13.0 |
CPE
Remediation
| |
| ESET Internet Security | <= 18.1.13.0 |
CPE
Remediation
| |
| ESET Smart Security Premium | <= 18.1.13.0 |
CPE
Remediation
| |
| ESET Security Ultimate | All versions |
CPE
Remediation
| |
| ESET Endpoint Antivirus | <= 12.0.2049.0 <= 11.1.2059.0 |
CPE
Remediation
| |
| ESET Endpoint Security | <= 12.0.2049.0 <= 11.1.2059.0 |
CPE
Remediation
| |
| ESET Small Business Security | All versions |
CPE
Remediation
| |
| ESET Safe Server | All versions |
CPE
Remediation
| |
| ESET Server Security | <= 12.0.12004.0 <= 11.1.12009.1 |
CPE
Remediation
| |
| ESET Mail Security | <= 12.0.10003.0 <= 11.1.10011.0 |
CPE
Remediation
| |
| ESET Security | All versions |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jul 18, 2025 | New CVE Received | [email protected] |
Volerion