Security Advisory

CVE-2019-15663

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-03-20 17:10:05
Last updated 2024-08-05 00:56:22
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in Rivet Killer Control Center before 2.1.1352. IOCTL 0x120404 in KfeCo10X64.sys fails to validate an offset passed as a parameter during a memory operation, leading to an out-of-bounds read that can be used as part of a chain to escalate privileges (issue 1 of 2).