CVE-2021-32537
⚪ Do wiadomości
Wadliwy sterownik Realtek HAD pozwala lokalnym atakującym na spowodowanie awarii systemu.
CVSS
6.5
EPSS
0.4%
Exploit
poc
Vendor
realtek
Opis źródłowy (NVD)
Realtek HAD contains a driver crashed vulnerability which allows local side attackers to send a special string to the kernel driver in a user’s mode. Due to unexpected commands, the kernel driver will cause the system crashed.
exploit
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 6.5 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.4% |
| Opublikowano (NVD) | 2021-07-07 14:15:12 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-08 22:17:09 UTC |
Referencje
- http://packetstormsecurity.com/files/163498/Realtek-RTKVHD64.sys-Out-Of-Bounds-Access.html ([email protected]) [Exploit, Third Party Advisory, VDB Entry]
- https://www.twcert.org.tw/tw/cp-132-4813-7b578-1.html ([email protected]) [Third Party Advisory]