First published: Fri Mar 05 2021(Updated: )
The MsIo64.sys driver before 1.1.19.1016 in MSI Dragon Center before 2.0.98.0 has a buffer overflow that allows privilege escalation via a crafted 0x80102040, 0x80102044, 0x80102050, or 0x80102054 IOCTL request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
<2.0.98.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27965 has been classified with a high severity level due to its potential for privilege escalation.
To mitigate CVE-2021-27965, users should update the MSI Dragon Center software to version 2.0.98.0 or later.
The vulnerability in CVE-2021-27965 is caused by a buffer overflow in the MsIo64.sys driver.
CVE-2021-27965 affects MSI Dragon Center versions prior to 2.0.98.0.
CVE-2021-27965 can be exploited through crafted IOCTL requests that are specifically targeted at the affected driver.