CVE-2026-15029

⚪ Do wiadomości

Dereferencja nieufnego wskaźnika w ASUS System Control Interface pozwala na nieautoryzowany dostęp do pamięci.

CVSS
0.0
EPSS
0.2%
Exploit
none
Vendor
Opis źródłowy (NVD)

Untrusted Pointer Dereference in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Business Manager allows a local administrator to perform arbitrary physical memory read and write operations via crafted IOCTL requests to the driver, bypassing OS-enforced memory protections. Refer to the '  Security Update for ASUS System Control Interface  ' section on the ASUS Security Advisory for more information.

brak Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS0.0
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.2%
Opublikowano (NVD)2026-07-15 02:18:13 UTC
Ostatnia modyfikacja (NVD)2026-09-17 09:16:39 UTC
Referencje