Update README with accurate impact assessment and BYOVD definition

This commit is contained in:
416rehman
2026-04-06 21:39:16 -04:00
parent 91723d8f6c
commit 50b1c50227
+1 -1
View File
@@ -4,7 +4,7 @@
The ASUS `bsitf.sys` (also distributed as `AsusBSItf.sys`) kernel driver exposes IOCTL `0x222808` which allocates physically contiguous kernel memory of attacker-controlled size, maps it into the calling process's address space with full read/write permissions, and returns both the usermode virtual address and the physical address to the caller.
The device requires administrator privileges to open. No validation is performed on the allocation size or number of outstanding allocations.
The device requires administrator privileges to open, making this an admin-to-kernel escalation. In a BYOVD (Bring Your Own Vulnerable Driver) scenario, an attacker who already has admin (e.g., via social engineering or a separate exploit) can load this legitimately signed driver to gain arbitrary kernel memory access without needing a kernel exploit.
## Affected Versions