An issue was discovered in gdrv.sys in Gigabyte APP Center before 19.0227.1. The vulnerable driver exposes a wrmsr instruction via IOCTL 0xC3502580 and does not properly filter the target Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-03-25T16:59:12

Updated: 2024-08-04T20:54:28.409Z

Reserved: 2019-02-07T00:00:00

Link: CVE-2019-7630

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-03-25T17:15:14.357

Modified: 2023-02-03T20:27:43.480

Link: CVE-2019-7630

cve-icon Redhat

No data.