The driver in Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys) allows any authenticated user to read and write to arbitrary memory, I/O ports, and MSRs. This can be exploited for privilege escalation, code execution under high privileges, and information disclosure. These signed drivers can also be used to bypass the Microsoft driver-signing policy to deploy malicious code.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/Barakat/CVE-2019-16098 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-09-11T16:20:16
Updated: 2024-08-05T01:03:32.893Z
Reserved: 2019-09-08T00:00:00
Link: CVE-2019-16098
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-09-11T17:15:10.713
Modified: 2024-11-21T04:30:01.967
Link: CVE-2019-16098
Redhat
No data.