Vulnerabilities > CVE-2018-19320 - Unspecified vulnerability in Gigabyte products
Attack vector
LOCAL Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 exposes ring0 memcpy-like functionality that could allow a local attacker to take complete control of the affected system.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 6 |
Packetstorm
data source | https://packetstormsecurity.com/files/download/150894/CORE-2018-0007.txt |
id | PACKETSTORM:150894 |
last seen | 2018-12-25 |
published | 2018-12-21 |
reporter | Core Security Technologies |
source | https://packetstormsecurity.com/files/150894/GIGABYTE-Driver-Privilege-Escalation.html |
title | GIGABYTE Driver Privilege Escalation |