The driver in Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys) allows any authenticated user to read and write to arbitrary memory, I/O ports, and MSRs. This can be exploited for privilege escalation, code execution under high privileges, and information disclosure. These signed drivers can also be used to bypass the Microsoft driver-signing policy to deploy malicious code.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-09-11T16:20:16

Updated: 2024-08-05T01:03:32.893Z

Reserved: 2019-09-08T00:00:00

Link: CVE-2019-16098

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-09-11T17:15:10.713

Modified: 2021-07-21T11:39:23.747

Link: CVE-2019-16098

cve-icon Redhat

No data.