packetstormsecurity.com
http://packetstormsecurity.com/files/154259/Asus-Precision-TouchPad-11.0.0.25-Denial-Of-Service-Privilege-Escalation.html CVE-2019-10709
CRITICAL
Asus Precision TouchPad 11.0.0.25 - Denial of Service
Record summary
CVE-2019-10709 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
AsusPTPFilter.sys on Asus Precision TouchPad 11.0.0.25 hardware has a Pool Overflow associated with the \\.\AsusTP device, leading to a DoS or potentially privilege escalation via a crafted DeviceIoControl call.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBAsus Precision TouchPad 11.0.0.25 - Denial of ServiceExploitDB exploitby Athanasios TserpelisNot analyzed1 file
References
3blog.telspace.co.za
https://blog.telspace.co.za/2019/08/tsa-2019-001-asus-precision-touchpad.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-10709