Vulnerability Description
MSI Feature Manager contains a local privilege escalation vulnerability in the KernCoreLib64.sys kernel driver that allows any locally logged-on user to perform arbitrary physical memory read/write and unrestricted I/O port operations by accessing exposed IOCTL handlers without administrator privileges. Attackers can exploit the accessible device object through IOCTL handlers to manipulate kernel objects, tamper with kernel-mode callbacks, bypass Protected Process Light protections, and disable security software.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://github.com/readmsr/MSI_FeatureManager_CVE
- https://www.vulncheck.com/advisories/msi-gamegaraj-kerncorelib64-sys-privilege-e
FAQ
What is CVE-2026-57851?
CVE-2026-57851 is a vulnerability with a CVSS score of 7.8 (HIGH). MSI Feature Manager contains a local privilege escalation vulnerability in the KernCoreLib64.sys kernel driver that allows any locally logged-on user to perform arbitrary physical memory read/write an...
How severe is CVE-2026-57851?
CVE-2026-57851 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-57851?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.