AI description
CVE-2025-52347 describes a vulnerability found in the `DirectIo64.sys` component of several PassMark products, specifically BurnInTest v11.0 Build 1011, OSForensics v11.1 Build 1007, and PerformanceTest v11.1 Build 1004. This flaw allows attackers to gain access to kernel memory and escalate privileges on an affected system. The vulnerability is triggered through a specially crafted IOCTL 0x8011E044 call. This input validation issue, classified as CWE-20, means the affected software does not properly validate input, which can lead to unintended consequences such as unauthorized memory access and privilege escalation.
- Description
- An issue in the component DirectIo64.sys of PassMark BurnInTest v11.0 Build 1011, OSForensics v11.1 Build 1007, and PerformanceTest v11.1 Build 1004 allows attackers to access kernel memory and escalate privileges via a crafted IOCTL 0x8011E044 call.
- Source
- cve@mitre.org
- NVD status
- Received
CVSS 3.1
- Type
- Secondary
- Base score
- 7.8
- Impact score
- 5.9
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
- 134c704f-9b21-4f2e-91b3-4a467353bcc0
- CWE-20
Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.
- Hype score
1
CVE-2025-52347 Kernel Memory Access and Privilege Escalation in PassMark DirectIo64.sys https://t.co/kYUTUnUFBB
@VulmonFeeds
1 May 2026
91 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨*CVE* CVE-2025-52347 An issue in the component DirectIo64.sys of PassMark BurnInTest v11.0 Build 1011, OSForensics v11.1 Build 1007, and PerformanceTest v11.1 Build 1004 allows attackers … https://t.co/Ji6wriYlct ----- Traducción: CVE-2025-52347 Un … https://t.co/utmtNg
@infoflowcloud
1 May 2026
129 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-52347 An issue in the component DirectIo64.sys of PassMark BurnInTest v11.0 Build 1011, OSForensics v11.1 Build 1007, and PerformanceTest v11.1 Build 1004 allows attackers … https://t.co/fSrtmAMHy8
@CVEnew
1 May 2026
203 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes