In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can use malformed packets to leak up to 145 bytes of uninitialized kernel pool memory. This vulnerability affects Windows 10 and earlier.
CVSS
No CVSS.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-10 18:17
Updated : 2026-09-10 19:54
NVD link : CVE-2026-15418
Mitre link : CVE-2026-15418
CVE.ORG link : CVE-2026-15418
JSON object : View
Products Affected
No product.
CWE
CWE-130
Improper Handling of Length Parameter Inconsistency
