CVE-2022-4990: High severity ASUS AI Suite 3 vulnerability
UNSUPPORTED WHEN ASSIGNED Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows a local user to bypass security validation and access restricted memory blocks via crafted IOCTL requests, leading to privilege escalation. Refer to the 'End-of-Life Notice and Driver Update for Legacy ASUS Drivers ' section on the ASUS Security Advisory for more information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-4990?
The severity of CVE-2022-4990 is high with a CVSS score of 7.3.
How do I fix CVE-2022-4990?
To fix CVE-2022-4990, update the ASUS AI Suite 3 driver to the latest version provided by ASUS.
What type of vulnerability is CVE-2022-4990?
CVE-2022-4990 is an improper validation vulnerability that allows local users to bypass security mechanisms.
What could be the consequences of CVE-2022-4990?
The consequence of CVE-2022-4990 may include privilege escalation, allowing malicious users to access restricted memory.
Who is affected by CVE-2022-4990?
Local users of the ASUS AI Suite 3 driver are affected by CVE-2022-4990.