CVE-2018-19321
HIGH(7.8)KEV — Aktiv ausgenutztCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- CVSS 7.8 — Hoch
- Im CISA KEV-Katalog (aktiv ausgenutzt)
CISA KEV
Bestätigt ausgenutzt
EPSS-Score
3.7%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
7.8
Technische Schwere
SecBoard-Einordnung
CVE-2018-19321 betrifft die GPCIDrv- und GDrv-Treiber in verschiedenen GIGABYTE-Anwendungen, darunter APP Center, AORUS GRAPHICS ENGINE, XTREME GAMING ENGINE und OC GURU II. Diese Schwachstelle ermöglicht es einem lokalen Angreifer, beliebigen physischen Speicher zu lesen und zu schreiben. Die Hauptauswirkung ist eine mögliche Privilegienerhöhung auf dem betroffenen System.
KI-gestützte Einordnung auf Basis der NVD-Daten.
Beschreibung
The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 expose functionality to read and write arbitrary physical memory. This could be leveraged by a local attacker to elevate privileges.
Betroffene Produkte
- cpe:2.3:a:gigabyte:aorus_graphics_engine:*:*:*:*:*:*:*:*
- cpe:2.3:a:gigabyte:app_center:*:*:*:*:*:*:*:*
- cpe:2.3:a:gigabyte:oc_guru_ii:2.08:*:*:*:*:*:*:*
- cpe:2.3:a:gigabyte:xtreme_gaming_engine:*:*:*:*:*:*:*:*
Referenzen
- http://seclists.org/fulldisclosure/2018/Dec/39
- http://www.securityfocus.com/bid/106252
- https://www.gigabyte.com/Support/Security/1801
- https://www.secureauth.com/labs/advisories/gigabyte-drivers-elevation-privilege-...
- http://seclists.org/fulldisclosure/2018/Dec/39
- http://www.securityfocus.com/bid/106252
- https://www.gigabyte.com/Support/Security/1801
- https://www.secureauth.com/labs/advisories/gigabyte-drivers-elevation-privilege-...
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-...