Impact
The vulnerability resides in the sub_11008 function of the ComputerZ_x64.sys driver used by Chengdu Qilu Technology Ludashi. Manipulating the PhysicalAddress argument while calling this function allows an attacker to read sensitive data from memory, resulting in information disclosure. The flaw can expose confidential data, compromising confidentiality without enabling direct code execution.
Affected Systems
This issue affects Chengdu Qilu Technology Ludashi version 6.1026.4715.714. The vulnerability exists in the ComputerZ_x64.sys driver component included in this release.
Risk and Exploitability
The CVSS score of 4.6 indicates moderate risk. The flaw requires local execution and the vendor has not released a fix, leaving the vulnerability unpatched. An exploit has been published and may be used by attackers. The vulnerability is not listed in the CISA KEV catalog, and the EPSS score of < 1% indicates a very low exploitation probability, meaning the attacker must rely on local privileged access. The primary risk is that privileged local users could read sensitive system memory.
OpenCVE Enrichment