CVE-2026-8050
CVE-2026-8050
In SignalRGB versions prior to 1.3.7.0, seven of the thirteen IOCTL handlers dereference the SystemBuffer pointer without first verifying that it is non-NULL. Sending an IOCTL with an empty input buffer causes a NULL pointer dereference, resulting in a kernel crash.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected products
SignalRGB · SignalRGB kernel driverWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://kb.cert.org/vuls/id/380058