Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-25477


Vulnerability in Realtek RtsPer driver for PCIe Card Reader (RtsPer.sys) before 10.0.22000.21355 and Realtek RtsUer driver for USB Card Reader (RtsUer.sys) before 10.0.22000.31274 leaks driver logs that contain addresses of kernel mode objects, weakening KASLR.


Published

2024-07-02T19:15:11.757

Last Modified

2024-11-21T06:52:14.437

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-532
  • Type: Secondary
    CWE-532

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application realtek rtsper < 10.0.22000.21355 Yes
Application realtek rtsuer < 10.0.22000.31274 Yes

References