CVE-2018-19320β€”GIGABYTE Multiple Products Unspecified Vulnerability

PUBLISHEDvulnerability record
2022-10-24 Β· last modified June 21, 2025

Metadata

CVE ID:
CVE-2018-19320
Project:
GIGABYTE
Product:
Multiple Products
Date Added:
2022-10-24
Due Date:
2022-11-14
Last Updated:
June 21, 2025

Vulnerability Name

GIGABYTE Multiple Products Unspecified Vulnerability

Description

The GDrv low-level driver in GIGABYTE App Center, AORUS Graphics Engine, XTREME Gaming Engine, and OC GURU II exposes ring0 memcpy-like functionality that could allow a local attacker to take complete control of the affected system.

Known To Be Used in Ransomware Campaigns?

Ransomware Status:
KNOWN

Action

Apply updates per vendor instructions.

Additional Notes