Impact
The flaw resides in the sub_11504 routine of the WinRing0x64.sys driver that handles IOCTL requests for physical memory access. By supplying specially crafted PhysicalAddress, AlignNumer, and AlignSize parameters, an attacker with local privileges can circumvent intended checks and gain elevated rights to read or write physical memory. This constitutes a privilege escalation defect consistent with CWE-266 and CWE-269, potentially enabling arbitrary code execution or data exfiltration within the host.
Affected Systems
Colorful iGameCenter version 2.0.0.81 on Windows systems is the documented vulnerable build. Users running this specific version are susceptible; no other products or releases are currently known to be affected.
Risk and Exploitability
The CVSS score of 9.3 marks this issue as critical. Because exploitation requires local access, remote attackers are not affected. EPSS data is not available and the vulnerability is not listed in the CISA KEV catalog. If an attacker can authenticate locally or can execute code with user-level rights, they can leverage the privilege mismanagement to elevate privileges and potentially compromise the entire machine.
OpenCVE Enrichment