CVE-2017-14398: Buffer Overflow
rzpnk.sys in Razer Synapse 2.20.15.1104 allows local users to read and write to arbitrary memory locations, and consequently gain privileges, via a methodology involving a handle to \Device\PhysicalMemory, IOCTL 0x22A064, and ZwMapViewOfSection.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-14398?
CVE-2017-14398 is considered a high severity vulnerability due to its potential for privilege escalation.
How do I fix CVE-2017-14398?
To fix CVE-2017-14398, upgrade Razer Synapse to a version later than 2.20.15.1104 that addresses this vulnerability.
Who is affected by CVE-2017-14398?
Local users running Razer Synapse version 2.20.15.1104 are affected by CVE-2017-14398.
What is the impact of CVE-2017-14398?
The impact of CVE-2017-14398 allows local users to read and write to arbitrary memory locations, leading to potential privilege escalation.
Is CVE-2017-14398 a local or remote vulnerability?
CVE-2017-14398 is a local vulnerability, meaning it can only be exploited by a user with local access to the system.