VulnerabilityModified
CVE-2010-1592
sandra.sys 15.18.1.1 and earlier in the Sandra Device Driver in SiSoftware Sandra 16.10.2010.1 and earlier allows local users to gain privileges or cause a denial of service (system crash) via unspecified vectors involving "Model-Specific Registers."
MEDIUM 6.9EPSS 0.43%
Does this matter?
Lower severity and a low EPSS score (0.43%). Track it; it rarely justifies an emergency change on its own.
Description
sandra.sys 15.18.1.1 and earlier in the Sandra Device Driver in SiSoftware Sandra 16.10.2010.1 and earlier allows local users to gain privileges or cause a denial of service (system crash) via unspecified vectors involving "Model-Specific Registers."
- CVSS 2.0
- 6.9 MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 0.43% probability · 36th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- sisoftware/sandra
- Source
- cve@mitre.org
References
- http://osvdb.org/61947
- http://secunia.com/advisories/38212Vendor Advisory
- http://www.ntinternals.org/ntiadv0808/ntiadv0808.htmlExploit
- http://www.vupen.com/english/advisories/2010/0223Vendor Advisory
- http://osvdb.org/61947
- http://secunia.com/advisories/38212Vendor Advisory
- http://www.ntinternals.org/ntiadv0808/ntiadv0808.htmlExploit
- http://www.vupen.com/english/advisories/2010/0223Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.