← Browse

CVE-2018-19323

Act now ● On CISA KEV — actively exploited used in ransomware

Actively exploited — on the CISA KEV list.

CVSS base
9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS — probability of exploitation (30 days)
7.8%
94.4th percentile
CISA KEV
Listed
Added 2022-10-24 · patch by 2022-11-14
Weakness / dates
Published 2018-12-21 · modified 2026-08-13

Description

The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 exposes functionality to read and write Machine Specific Registers (MSRs).

Affected

gigabyte

References

Official: NVD · CVE.org