Description
In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can use malformed packets to corrupt kernel pool memory, resulting in arbitrary code execution with escalated privileges.
Published: 2026-09-10
Score: 7 High
EPSS: < 1% Very Low
KEV: No
Impact: Arbitrary code execution via kernel memory corruption
Action: Apply Patch
AI Analysis

Impact

A local unprivileged user who has physical access to a CP210x USB device can send specially crafted packets to the Silicon Labs silabser.sys driver. The driver processes these packets without adequate bounds checking, corrupting kernel pool memory and allowing the attacker to execute arbitrary code with escalated privileges.

Affected Systems

Silicon Labs silabser.sys driver for CP210x devices, versions 11.5.0 and earlier.

Risk and Exploitability

The CVSS score of 7 indicates moderate to high severity. The EPSS score is not available, and the vulnerability is not listed in CISA's KEV catalog. Attackers need local access to the device and the ability to generate malformed packets; no network component is required. If exploited, the attacker would gain kernel‑level code execution, compromising confidentiality, integrity, and availability of the affected system.

Generated by OpenCVE AI on September 11, 2026 at 00:09 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the silabser.sys driver to a version newer than 11.5.0 released by Silicon Labs.
  • Restrict physical access to CP210x USB devices so that only trusted users or processes can enumerate and connect to them, reducing the attack surface for local users.
  • Implement additional input validation in any custom driver code handling CP210x packets to guard against buffer overflows and memory corruption.

Generated by OpenCVE AI on September 11, 2026 at 00:09 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 10 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 10 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can use malformed packets to corrupt kernel pool memory, resulting in arbitrary code execution with escalated privileges.
Title CP210x Driver Memory Corruption results in Arbitrary Code Execution
Weaknesses CWE-121
References
Metrics cvssV4_0

{'score': 7, 'vector': 'CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: Silabs

Published:

Updated: 2026-09-10T18:21:53.494Z

Reserved: 2026-07-10T14:57:35.289Z

Link: CVE-2026-15419

cve-icon Vulnrichment

Updated: 2026-09-10T18:21:49.292Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-10T18:17:55.590

Modified: 2026-09-10T19:54:25.810

Link: CVE-2026-15419

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-11T00:15:17Z

Weaknesses
  • CWE-121

    Stack-based Buffer Overflow