Vulnerability in Realtek RtsPer driver for PCIe Card Reader (RtsPer.sys) before 10.0.22000.21355 and Realtek RtsUer driver for USB Card Reader (RtsUer.sys) before 10.0.22000.31274 allows for the leakage of kernel memory from both the stack and the heap.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 29 Oct 2024 04:15:00 +0900

Type Values Removed Values Added
First Time appeared Realtek rtsper Pcie Card Reader Driver
Realtek rtsper Usb Card Reader Driver
CPEs cpe:2.3:a:realtek:rtsper_pcie_card_reader_driver:10.0.22000.21355:*:*:*:*:*:*:*
cpe:2.3:a:realtek:rtsper_usb_card_reader_driver:10.0.22000.31274:*:*:*:*:*:*:*
Vendors & Products Realtek rtsper Pcie Card Reader Driver
Realtek rtsper Usb Card Reader Driver
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}

cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 25 Oct 2024 03:15:00 +0900

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 25 Oct 2024 02:15:00 +0900

Type Values Removed Values Added
References

Thu, 22 Aug 2024 01:30:00 +0900

Type Values Removed Values Added
First Time appeared Realtek rtsper
Realtek rtsuer
CPEs cpe:2.3:h:realtek:rtsper.sys:-:*:*:*:*:*:*:*
cpe:2.3:h:realtek:rtsuer.sys:-:*:*:*:*:*:*:*
cpe:2.3:o:realtek:rtsper.sys_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:realtek:rtsuer.sys_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:realtek:rtsper:*:*:*:*:*:*:*:*
cpe:2.3:a:realtek:rtsuer:*:*:*:*:*:*:*:*
Vendors & Products Realtek rtsper.sys
Realtek rtsper.sys Firmware
Realtek rtsuer.sys
Realtek rtsuer.sys Firmware
Realtek rtsper
Realtek rtsuer

Thu, 22 Aug 2024 00:45:00 +0900

Type Values Removed Values Added
First Time appeared Realtek
Realtek rtsper.sys
Realtek rtsper.sys Firmware
Realtek rtsuer.sys
Realtek rtsuer.sys Firmware
Weaknesses CWE-401
CPEs cpe:2.3:h:realtek:rtsper.sys:-:*:*:*:*:*:*:*
cpe:2.3:h:realtek:rtsuer.sys:-:*:*:*:*:*:*:*
cpe:2.3:o:realtek:rtsper.sys_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:realtek:rtsuer.sys_firmware:*:*:*:*:*:*:*:*
Vendors & Products Realtek
Realtek rtsper.sys
Realtek rtsper.sys Firmware
Realtek rtsuer.sys
Realtek rtsuer.sys Firmware
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-10-28T18:23:37.520Z

Reserved: 2022-02-21T00:00:00

Link: CVE-2022-25479

cve-icon Vulnrichment

Updated: 2024-08-03T04:42:49.441Z

cve-icon NVD

Status : Modified

Published: 2024-07-02T19:15:11.957

Modified: 2024-11-21T06:52:14.870

Link: CVE-2022-25479

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses