An issue was discovered in gdrv.sys in Gigabyte APP Center before 19.0227.1. The vulnerable driver exposes a wrmsr instruction via IOCTL 0xC3502580 and does not properly filter the target Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-03-25T16:59:12

Updated: 2020-05-19T12:32:59

Reserved: 2019-02-07T00:00:00


Link: CVE-2019-7630

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-03-25T17:15:14.357

Modified: 2023-02-03T20:27:43.480


Link: CVE-2019-7630

JSON object: View

cve-icon Redhat Information

No data.

CWE