Impact
The vulnerability in the DirectIo64.sys driver allows a local attacker to either read arbitrary Model‑Specific Registers (MSRs) or write any MSR with a zero value through exposed IOCTL interfaces that lack proper blocklist enforcement. By zeroing the system call handler MSR, the attacker can cause an unrecoverable kernel crash on the next system call, creating a denial‑of‑service condition, and by reading sensitive MSRs can identify kernel data structures, potentially facilitating privilege escalation. Based on the description, it is inferred that the attack requires local user privileges and cannot be performed remotely.
Affected Systems
Affected software includes PassMark Software’s BurnInTest prior to build 1000 of version 11.1, PerformanceTest prior to build 1012 of version 11.1, and OSForensics prior to build 1016 of version 11.1. These versions expose the vulnerable DirectIo64.sys driver.
Risk and Exploitability
The CVSS base score of 6.9 indicates a moderate severity vulnerability that requires local access, and the EPSS score is not available, while the vulnerability is not listed in the CISA KEV catalog. Local attackers with user‑level privileges can drain system integrity by writing zeroes to critical MSRs and can also observe sensitive kernel data, but the lack of a remote exploit reduces the immediacy of the threat compared to higher‑grade exposures.
OpenCVE Enrichment