The AsrDrv101.sys and AsrDrv102.sys low-level drivers in ASRock RGBLED before v1.0.35.1, A-Tuning before v3.0.210, F-Stream before v3.0.210, and RestartToUEFI before v1.0.6.2 expose functionality to read and write arbitrary physical memory. This could be leveraged by a local malicious user to elevate privileges.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
asrock restart to uefi |
||
asrock a-tuning |
||
asrock rgbled |
||
asrock f-stream |