CVE-2022-4989: High severity ASUS ASUS AI Suite 3 driver vulnerability
UNSUPPORTED WHEN ASSIGNED Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows a local user to access unintended memory regions via crafted IOCTL requests, leading to privilege escalation. Refer to the 'End-of-Life Notice and Driver Update for Legacy ASUS Drivers ' section on the ASUS Security Advisory for more information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-4989?
The severity of CVE-2022-4989 is rated as high with a score of 8.5 according to CVSS.
How do I fix CVE-2022-4989?
To mitigate CVE-2022-4989, it is recommended to update to the latest version of the ASUS AI Suite 3 driver.
What are the implications of CVE-2022-4989?
CVE-2022-4989 allows a local user to potentially escalate privileges by accessing unintended memory regions.
What systems are affected by CVE-2022-4989?
CVE-2022-4989 affects systems running the ASUS AI Suite 3 driver.
What type of vulnerability is CVE-2022-4989?
CVE-2022-4989 is categorized as an improper validation vulnerability in the ASUS AI Suite 3 driver.