PT-2021-10722 · Evga · Evga Precision Xoc
Hfiref0X
·
Published
2021-12-28
·
Updated
2022-01-12
·
CVE-2020-22057
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
EVGA Precision XOC version v6.2.7
Description
The issue concerns the configuration of low-level drivers, specifically WinRin0x64.sys and WinRing0.sys, which have a default security descriptor. This configuration allows attackers to access sensitive components and data.
Recommendations
For EVGA Precision XOC version v6.2.7, consider updating the security descriptor of the WinRin0x64.sys and WinRing0.sys drivers to restrict access to sensitive components and data. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Evga Precision Xoc