CVE-2025-0618: Trellix Fireeye Edr HX

Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.

A malicious third party could invoke a persistent denial of service vulnerability in FireEye EDR agent by sending a specially-crafted tamper protection event to the HX service to trigger an exception. This exception will prevent any further tamper protection events from being processed, even after a reboot of HX.

Affected products

Published 2025-04-23. Last modified 2026-06-17.