CVE-2024-33219

A

n issue in the component AsIO64.sys of ASUSTeK Computer Inc ASUS SABERTOOTH X99 Driver v1.0.1.0 allows attackers to escalate privileges and execute arbitrary code via sending crafted IOCTL requests.

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:asus:sabertooth_x99_firmware:1.0.1.0:*:*:*:*:*:*:*
cpe:2.3:h:asus:sabertooth_x99:-:*:*:*:*:*:*:*

History

18 Apr 2025, 16:05

Type Values Removed Values Added
First Time Asus sabertooth X99
Asus
Asus sabertooth X99 Firmware
References () https://github.com/DriverHunter/Win-Driver-EXP/tree/main/CVE-2024-33219 - () https://github.com/DriverHunter/Win-Driver-EXP/tree/main/CVE-2024-33219 - Exploit, Third Party Advisory
CPE cpe:2.3:h:asus:sabertooth_x99:-:*:*:*:*:*:*:*
cpe:2.3:o:asus:sabertooth_x99_firmware:1.0.1.0:*:*:*:*:*:*:*

21 Nov 2024, 09:16

Type Values Removed Values Added
References () https://github.com/DriverHunter/Win-Driver-EXP/tree/main/CVE-2024-33219 - () https://github.com/DriverHunter/Win-Driver-EXP/tree/main/CVE-2024-33219 -

20 Aug 2024, 15:35

Type Values Removed Values Added
Summary
  • (es) Un problema en el componente AsIO64.sys de ASUSTeK Computer Inc ASUS SABERTOOTH X99 Driver v1.0.1.0 permite a los atacantes escalar privilegios y ejecutar código arbitrario mediante el envío de solicitudes IOCTL manipuladas.
CWE CWE-782
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

22 May 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-22 15:15

Updated : 2025-04-18 16:05


NVD link : CVE-2024-33219

Mitre link : CVE-2024-33219

CVE.ORG link : CVE-2024-33219


JSON object : View

CWE
CWE-782

Exposed IOCTL with Insufficient Access Control