Impact
A flaw in the named pipe handler of Razer RzUpdateService allows a local user to manipulate the lpThreadParameter argument and gain higher privileges than intended. The weakness is a compromise of privilege management, leading to potential elevation of local privileges. The formal classification of the flaw aligns with CWE-266 and CWE-269, both related to improper handling of privileges and unauthorized privilege escalation. The impact is local to the host machine, but any escalation can jeopardize the entire system’s security posture if the attacker obtains administrative rights.
Affected Systems
The vulnerability affects Razer RzUpdateService version 1.10.14.0. It is present on systems that have the RzUpdateEngineService installed, typically within the C:\Program Files (x86)\Razer\RzUpdateEngineService directory. No additional vendor or product ranges are listed beyond this service.
Risk and Exploitability
The vulnerability carries a CVSS score of 8.5, indicating a high severity level. The EPSS score is not available, and the weakness is not listed in the CISA KEV catalog. The attack requires local access; the exploit has been publicly released and could be used if an attacker gains local foothold. The potential for privilege escalation makes it a significant risk for enterprise environments where non‑privileged users could abuse the service. The attack vector is inferred to be local due to the nature of named pipe manipulation and the requirement to invoke the RzUpdateService executable from within the local system.
OpenCVE Enrichment