An issue was discovered in WinRing0x64.sys in Moo0 System Monitor 1.83. The vulnerable driver exposes a wrmsr instruction via IOCTL 0x9C402088 and does not properly filter the Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-03-25T16:54:28

Updated: 2024-08-04T20:46:45.919Z

Reserved: 2019-01-31T00:00:00

Link: CVE-2019-7240

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-03-25T17:15:14.110

Modified: 2020-04-01T19:31:25.977

Link: CVE-2019-7240

cve-icon Redhat

No data.