cbcvebase.
CVE-2018-18537
published 2018-12-26

CVE-2018-18537: The GLCKIo low-level driver in ASUS Aura Sync v1.07.22 and earlier exposes a path to write an arbitrary DWORD to an arbitrary address.

medium5.5CVSS 3.0
AVLACLPRLUINSUCNIHAN
ITW
Exploited in the wild
The GLCKIo low-level driver in ASUS Aura Sync v1.07.22 and earlier exposes a path to write an arbitrary DWORD to an arbitrary address.

Affected

1 ranges
VendorProductVersion rangeFixed in
asusaura_sync_firmware