Our Malware Lab identified two vulnerabilities Local Privilege Escalation (LPE) within the service JetBrains ETW Host Service.
The component concerned, JetBrains.Etw.Collector.Host.exe, is part of the suite of development tools JetBrains dotTraceused for analysing the performance of applications. This binary could be installed automatically via theunified JetBrains installer and is also potentially used by other debugging components distributed with the same suite.
The vulnerabilities were communicated privately to JetBrains via their official reporting channel.
The company handled the report promptly and resolved the reported issues.
Both vulnerabilities were assigned the identifier CVE-2025-23385.
If you wish to learn more, here is the link to our full report.
In addition, you can subscribe to the specific mailing list Cyber Studios by Tinexta Defence, to receive updates on upcoming research: https://tinextadefence.it/mailing-list-cyber-studios/