CVE-2026-80117: PassMark PerformanceTest, BurnInTest, and OSForensics Arbitrary I/O Port Access via DirectIo64.sys
PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.1 build 1016 contain a privilege escalation vulnerability in DirectIo64.sys that allows local users to issue arbitrary IN and OUT instructions to any x86 I/O port due to missing allowlist or port validation on exposed IOCTLs. Attackers can obtain a device handle and write to sensitive ports including the PS/2 controller port, CPU reset ports, CMOS configuration ports, and interrupt controller ports to cause an immediate system reset or other hardware-level manipulation from a standard user account.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
A local user with low privileges can exploit it. The attack requires access to an affected system and the ability to obtain a handle to the DirectIo64.sys device; no user interaction is required.
What can an attacker do with the vulnerable driver?
An attacker can issue arbitrary x86 IN and OUT instructions to I/O ports, including sensitive hardware ports. This can cause an immediate system reset or enable other hardware-level manipulation from a standard user account.
Which product versions are affected?
Affected versions are PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.1 build 1016.