PT-2021-10722 · Evga · Evga Precision Xoc

Hfiref0X

·

Published

2021-12-28

·

Updated

2022-01-12

·

CVE-2020-22057

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions EVGA Precision XOC version v6.2.7
Description The issue concerns the configuration of low-level drivers, specifically WinRin0x64.sys and WinRing0.sys, which have a default security descriptor. This configuration allows attackers to access sensitive components and data.
Recommendations For EVGA Precision XOC version v6.2.7, consider updating the security descriptor of the WinRin0x64.sys and WinRing0.sys drivers to restrict access to sensitive components and data. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-22057

Affected Products

Evga Precision Xoc