CVE-2018-15499

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
4.7
MEDIUM
Affected
1
PROJECT

Description

GEAR Software products that include GEARAspiWDM.sys, 2.2.5.0, allow local users to cause a denial of service (Race Condition and BSoD on Windows) by not checking that user-mode memory is available right before writing to it. A check is only performed at the beginning of a long subroutine.

PoC code for CVE-2018-15499 (exploit race condition for BSoD)
GitHubGitHub
11