CVE-2026-90891

ASRock Polychrome SYNC/RGB software utility developed by ASRock Inc. has an Improper Access Control vulnerability. Authenticated local attackers can send a specially crafted IOCTL request to cause the driver to write to improperly restricted I/O ports, resulting in a forced operating system reboot.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-14 11:17

Updated : 2026-09-14 12:17


NVD link : CVE-2026-90891

Mitre link : CVE-2026-90891

CVE.ORG link : CVE-2026-90891


JSON object : View

Products Affected

No product.

CWE
CWE-1256

Improper Restriction of Software Interfaces to Hardware Features