NONE · 0

CVE-2019-25764

**UNSUPPORTED WHEN ASSIGNED**  Exposed IOCTL with Insufficient Access Control in the ASUS AURA SYNC driver allows a local user to bypass the driver's verification and invoke arbitrary IOCTLs, resultin...

Vulnerability Description

**UNSUPPORTED WHEN ASSIGNED**  Exposed IOCTL with Insufficient Access Control in the ASUS AURA SYNC driver allows a local user to bypass the driver's verification and invoke arbitrary IOCTLs, resulting in privilege escalation. Refer to the 'End-of-Life Notice and Driver Update for Legacy ASUS Drivers ' section on the ASUS Security Advisory for more information.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-25764?

CVE-2019-25764 is a documented vulnerability. **UNSUPPORTED WHEN ASSIGNED**  Exposed IOCTL with Insufficient Access Control in the ASUS AURA SYNC driver allows a local user to bypass the driver's verification and invoke arbitrary IOCTLs, resultin...

How severe is CVE-2019-25764?

CVSS scoring is not yet available for CVE-2019-25764. Check NVD for updates.

Is there a patch for CVE-2019-25764?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.