CVE-2019-8372
Last modified
CVE-2019-8372 is a vulnerability of currently unknown severity. The LHA.sys driver before 1.1.1811.2101 in LG Device Manager exposes functionality that allows low-privileged users to read and write arbitrary physical memory via specially crafted IOCTL requests and elevate system privileges. This occurs because the device object has an associated symbolic link and an open DACL.. EPSS estimates a 0.54% chance of exploitation in the next 30 days.
Description
The LHA.sys driver before 1.1.1811.2101 in LG Device Manager exposes functionality that allows low-privileged users to read and write arbitrary physical memory via specially crafted IOCTL requests and elevate system privileges. This occurs because the device object has an associated symbolic link and an open DACL.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Lg | Lha.Sys | < 1.1.1811.2101 |
References
- http://www.jackson-t.ca/lg-driver-lpe.htmlExploit, Third Party Advisory
- https://lgsecurity.lge.com/security_updates.htmlVendor Advisory
- https://twitter.com/Jackson_T/status/1097353402034475009Third Party Advisory
- http://www.jackson-t.ca/lg-driver-lpe.htmlExploit, Third Party Advisory
- https://lgsecurity.lge.com/security_updates.htmlVendor Advisory
- https://twitter.com/Jackson_T/status/1097353402034475009Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-8372?
How severe is CVE-2019-8372?
How do I fix CVE-2019-8372?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2019
- CVE-2019-8362DedeCMS through V5.7SP2 allows arbitrary file upload in dede…
- CVE-2019-8363Verydows 2.0 has XSS via the index.php?c=main a parameter, a…
- CVE-2019-8368OpenEMR v5.0.1-6 allows XSS.6.1
- CVE-2019-8369Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2019-8370Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2019-8371OpenEMR v5.0.1-6 allows code execution.7.2
- CVE-2019-8375The UIProcess subsystem in WebKit, as used in WebKitGTK thro…
- CVE-2019-8376An issue was discovered in Tcpreplay 4.3.1. A NULL pointer d…7.8
- CVE-2019-8377An issue was discovered in Tcpreplay 4.3.1. A NULL pointer d…7.8
- CVE-2019-8378An issue was discovered in Bento4 1.5.1-628. A heap-based bu…
- CVE-2019-8379An issue was discovered in AdvanceCOMP through 2.1. A NULL p…7.8
- CVE-2019-8380An issue was discovered in Bento4 1.5.1-628. A NULL pointer …
Are you affected by CVE-2019-8372?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
