CVE-2021-36925
02.11.2021, 13:15
RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users to achieve an arbitrary read or write operation from/to physical memory (leading to Escalation of Privileges, Denial of Service, Code Execution, and Information Disclosure) via a crafted Device IO Control packet to a device.Enginsight
Vendor | Product | Version |
---|---|---|
realtek | rtsupx_usb_utility_driver | 𝑥 ≤ 1.14.0.0 |
𝑥
= Vulnerable software versions