Medium severity5.5NVD Advisory· Published Sep 14, 2026· Updated Sep 14, 2026
CVE-2026-90891
CVE-2026-90891
Description
ASRock Polychrome SYNC/RGB software utility developed by ASRock Inc. has an Improper Access Control vulnerability. Authenticated local attackers can send a specially crafted IOCTL request to cause the driver to write to improperly restricted I/O ports, resulting in a forced operating system reboot.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.