VYPR
High severity7.8NVD Advisory· Published Dec 14, 2022· Updated Jun 17, 2026

CVE-2022-44898

CVE-2022-44898

Description

The MsIo64.sys component in Asus Aura Sync through v1.07.79 does not properly validate input to IOCTL 0x80102040, 0x80102044, 0x80102050, and 0x80102054, allowing attackers to trigger a memory corruption and cause a Denial of Service (DoS) or escalate privileges via crafted IOCTL requests.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Asus/Aura Sync2 versions
    cpe:2.3:a:asus:aura_sync:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:asus:aura_sync:*:*:*:*:*:*:*:*range: <=1.07.79
    • (no CPE)range: <=1.07.79
  • Asus/Aura Syncdescription

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.