Vulnerability in Realtek RtsPer driver for PCIe Card Reader (RtsPer.sys) before 10.0.22000.21355 and Realtek RtsUer driver for USB Card Reader (RtsUer.sys) before 10.0.22000.31274 allows writing to kernel memory beyond the SystemBuffer of the IRP.
History

Mon, 28 Oct 2024 19:15:00 +0000

Type Values Removed Values Added
First Time appeared Realtek rtsper Pcie Card Reader Driver
CPEs cpe:2.3:a:realtek:rtsper_pcie_card_reader_driver:*:*:*:*:*:*:*:*
Vendors & Products Realtek rtsper Pcie Card Reader Driver
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 24 Oct 2024 17:15:00 +0000

Type Values Removed Values Added
References
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 21 Aug 2024 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Realtek rtsper
Realtek rtsuer
Weaknesses NVD-CWE-noinfo CWE-787
CPEs cpe:2.3:h:realtek:rtsper.sys:-:*:*:*:*:*:*:*
cpe:2.3:h:realtek:rtsuer.sys:-:*:*:*:*:*:*:*
cpe:2.3:o:realtek:rtsper.sys_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:realtek:rtsuer.sys_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:realtek:rtsper:*:*:*:*:*:*:*:*
cpe:2.3:a:realtek:rtsuer:*:*:*:*:*:*:*:*
Vendors & Products Realtek rtsper.sys
Realtek rtsper.sys Firmware
Realtek rtsuer.sys
Realtek rtsuer.sys Firmware
Realtek rtsper
Realtek rtsuer

Wed, 21 Aug 2024 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Realtek
Realtek rtsper.sys
Realtek rtsper.sys Firmware
Realtek rtsuer.sys
Realtek rtsuer.sys Firmware
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:h:realtek:rtsper.sys:-:*:*:*:*:*:*:*
cpe:2.3:h:realtek:rtsuer.sys:-:*:*:*:*:*:*:*
cpe:2.3:o:realtek:rtsper.sys_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:realtek:rtsuer.sys_firmware:*:*:*:*:*:*:*:*
Vendors & Products Realtek
Realtek rtsper.sys
Realtek rtsper.sys Firmware
Realtek rtsuer.sys
Realtek rtsuer.sys Firmware
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-07-02T00:00:00

Updated: 2024-10-28T19:03:49.116Z

Reserved: 2022-02-21T00:00:00

Link: CVE-2022-25480

cve-icon Vulnrichment

Updated: 2024-08-03T04:42:49.578Z

cve-icon NVD

Status : Modified

Published: 2024-07-02T19:15:12.037

Modified: 2024-11-21T06:52:15.070

Link: CVE-2022-25480

cve-icon Redhat

No data.