← Back to feed
Vulnerabilities & PatchesEmerging1 sourceJul 15, 2026 · 17:08via CERT/CC Vulnerability Notes

VU#529388: Privilege escalation vulnerability via unprotected IOCTL interface in Pegatron Tdelo64.sys

Brief

Overview

A privilege escalation vulnerability exists in the tdeio64. sys driver due to an unprotected input/output control (IOCTL) dispatch routine that fails to validate the origin and permissions of user-supplied requests. An unprivileged local attacker can abuse exposed IOCTL dispatch routines [RM1. 1][MB1.

2]to perform arbitrary kernel memory read and write operations, ultimately obtaining NT AUTHORITY\SYSTEM privileges and compromising the security of the affected system.

Description

The tdeio64. sys driver distributed by Pegatron Corporation, a Taiwanese electronics manufacturer that produces motherboards and OEM components, is a Windows Driver Model (WDM) driver that provides low-level access to system I/O ports and hardware components. The driver exposes the \\.

Read more on CERT/CC Vulnerability Notes