MEDIUM
PassMark Software
CVE published 2026-09-04
CVE-2026-80115
A vulnerability in DirectIo64.sys within PassMark PerformanceTest, BurnInTest, and OSForensics allows local attackers to escalate privileges and cause denial-of-service. The vulnerability exposes IOCTLs with insufficient blocklist enforcement, enabling attackers to read arbitrary Model-Specific Registers or write zero to any MSR. This can lead to an immediate unrecoverable kernel crash or the reading of s [truncated]