CVE-2020-15368: Medium severity ASRock Rgb Driver Firmware vulnerability
Published Jun 29, 2020
·Updated
AsrDrv103.sys in the ASRock RGB Driver does not properly restrict access from user space, as demonstrated by triggering a triple fault via a request to zero CR3.
Affected Software
4 affected components
ASRock Rgb Driver Firmware
ASRock RGB Driver
All of the following
ASRock Rgb Driver Firmware
ASRock RGB Driver
Event History
Jun 29, 2020
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-15368?
CVE-2020-15368 is considered a high severity vulnerability due to its potential to compromise system stability and security.
2
How do I fix CVE-2020-15368?
To fix CVE-2020-15368, update the ASRock RGB Driver to the latest version provided by ASRock.
3
What are the consequences of exploit CVE-2020-15368?
Exploitation of CVE-2020-15368 could lead to a system crash or unauthorized access to system resources.
4
Which software is affected by CVE-2020-15368?
CVE-2020-15368 affects the ASRock RGB Driver firmware and related components.
5
Is CVE-2020-15368 a hardware vulnerability?
No, CVE-2020-15368 is a software vulnerability specifically affecting the ASRock RGB Driver.