Device

Gigabyte mengakui kesalahan dengan perangkat lunak Gigabyte Control Center yang membuat kernel terekspos terhadap penyerang

📰 PC Gamer✍️ Jacob Ridley📅 2 jam lalu👁 4 views
Share:💬𝕏f✈️

🌐 Konten masih dalam Bahasa Inggris. Terjemahan sedang diproses.

Gigabyte mengakui kesalahan dengan perangkat lunak Gigabyte Control Center yang membuat kernel terekspos terhadap penyerang

If you have a Gigabyte motherboard and use the Gigabyte Control Center (GCC) software, you'd better download the latest version of the software. While the risk of a local attacker hacking into your PC is pretty slim, it's best practice to just cover your butt before anything bad happens.

Gigabyte has listed a new vulnerability on its website that affects a pair of kernel drivers, GVCIDrv64.sys and gdrv3.sys. It says the drivers are components of the GCC software, which is widely recommended alongside the company's motherboards.

"The vulnerabilities exist in the kernel drivers' IOCTL interfaces." Gigabyte says of the cause of the vulnerability. "Due to insufficient access control and improper validation of input parameters, authenticated local attackers can perform unauthorized operations, including arbitrary physical memory mapping and direct hardware access.

An attacker can wield those vulnerable drivers through a "specially crafted" IOCTL request. In doing so, bypassing important memory protections and allowing them to elevate themselves to the most trusted level of your PC, the kernel.

Gigabyte thanks Mohamed Alzhrani (0xMaz) and Subhan Sultanov (me1n) for discovering the vulnerability and helping the patching effort. This comes at a time when Intel is said to be ending its lucrative bug bounty program.

There is a fix available. Any version of GCC from 26.08.28.01, GBT_VGA_26.08.24.01 or later has the mitigation in place. Looks like the current GCC version is 26.09.10.01. The mitigation includes the following:

  • Enhanced Access Control: Implemented strict security descriptors to ensure that the driver device objects are only accessible to authorized system accounts, preventing unprivileged users from interacting with the driver.
  • Interface Hardening: Removed unnecessary and high-risk interfaces that allowed direct physical memory mapping.
  • Privilege Validation: Integrated mandatory privilege checks for all hardware-access functions to ensure only requests with appropriate administrative rights are processed.
  • Input Validation: Implemented rigorous validation for all IOCTL input parameters to block access to restricted hardware registers and configuration spaces.

So, get that software updated. And if you're keen to stay on top of these things, here's the Gigabyte page with all its security disclosures.

Sumber: PC Gamer

Kenapa Memilih Kami?

Proses Instan

24/7 otomatis

💰

Harga Termurah

Harga bersaing

🔒

100% Aman

Refund jika gagal

📃

Terlengkap

Beragam produk

🎁

Cashback

Setiap pembelian

💳

Multi Payment

Banyak metode

💬

CS 24/7

Bantuan kapan saja

📬 Newsletter

Dapatkan info promo, produk baru, dan berita terkini langsung ke email kamu.

Kami tidak akan mengirim spam. Kamu bisa berhenti berlangganan kapan saja.

FAQ - Pertanyaan Umum

Temukan jawaban untuk pertanyaan seputar layanan kami

MakerGames adalah platform terpercaya untuk pembelian voucher game, top-up game, pulsa, paket data, token PLN, dan berbagai produk digital (PPOB) lainnya dengan harga termurah dan proses instan.
Pilih produk yang diinginkan, masukkan data yang diperlukan (seperti User ID atau nomor HP), pilih nominal, lakukan pembayaran melalui metode yang tersedia, dan produk akan dikirim secara otomatis dalam hitungan detik.
Kami mendukung berbagai metode pembayaran termasuk transfer bank, QRIS (GoPay, OVO, DANA, ShopeePay, Bank dan lain-lainnya), virtual account, dan saldo deposit.