cve/2022/CVE-2022-44898.md
2024-06-18 02:51:15 +02:00

907 B

CVE-2022-44898

Description

The MsIo64.sys component in Asus Aura Sync through v1.07.79 does not properly validate input to IOCTL 0x80102040, 0x80102044, 0x80102050, and 0x80102054, allowing attackers to trigger a memory corruption and cause a Denial of Service (DoS) or escalate privileges via crafted IOCTL requests.

POC

Reference

Github

No PoCs found on GitHub currently.