First published: Mon Jan 06 2025(Updated: )
An improper access control vulnerability in the AsusSAIO.sys driver may lead to the misuse of software functionality utilizing the driver when crafted IOCTL requests are supplied.
Credit: 54bf65a7-a193-42d2-b1ba-8e150d3c35e1
Affected Software | Affected Version | How to fix |
---|---|---|
ASUS System Analysis IO |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-55408 is considered to be high due to the potential misuse of the AsusSAIO.sys driver's functionality.
To fix CVE-2024-55408, users should update the Asus System Analysis IO driver to the latest version provided by ASUS.
CVE-2024-55408 affects the ASUS System Analysis IO software, specifically utilizing the AsusSAIO.sys driver.
CVE-2024-55408 is classified as an improper access control vulnerability.
CVE-2024-55408 may be exploited locally by supplying crafted IOCTL requests, which requires local access to the affected system.