← volver
CVE-2026-94129criticalCWE-119CWE-123

BioStar VALKYRIE AURORA IOCTL BS_RVSIO64.sys sub_1105C write-what-where

48Vexday Risk Score

Sin señal de explotación. Ella tiene prueba de concepto pública.

ssvc Attendcvss 9.3epss 0.1%
de la publicación al arma0 días
Publicada en NVD21 sept
1ª PoC21 sept
probabilidad de explotación
0.1%top 98% de las CVE
explotación observada
noninguna fuente lo reporta
1 exploit(s) público(s)
A vulnerability was detected in BioStar VALKYRIE AURORA 2.10.2411.0800. This vulnerability affects the function sub_1105C of the file BS_RVSIO64.sys of the component IOCTL Handler. The manipulation of the argument PhysicalAddress results in write-what-where condition. The attack needs to be approached locally. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P
Productos afectados
BioStar · VALKYRIE AURORA
PoCs públicas encontradas1
githubgithub.com/lzty/CVE-2026-941291
⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.