PT-2025-26185 · Peak System · Peak-System Driver
Viacheslav Moskvin
·
Published
2025-06-18
·
Updated
2025-06-21
·
CVE-2025-6217
CVSS v3.1
3.8
Low
| Vector | AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
PEAK-System Driver (affected versions not specified)
Description:
This issue allows local attackers to disclose sensitive information on affected installations. An attacker must first obtain the ability to execute low-privileged code on the target system. The flaw exists within the handling of the PCANFD ADD FILTERS IOCTL, resulting from the lack of proper locking when performing operations on an object. This can be leveraged to execute arbitrary code in the context of the kernel.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Time Of Check To Time Of Use
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Peak-System Driver