In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can use malformed packets to leak up to 145 bytes of uninitialized kernel pool memory. This vulnerability affects Windows 10 and earlier.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 10 Sep 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can use malformed packets to leak up to 145 bytes of uninitialized kernel pool memory. This vulnerability affects Windows 10 and earlier. | |
| Title | CP210x Memory Leakage | |
| Weaknesses | CWE-130 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Silabs
Published:
Updated: 2026-09-10T18:21:20.938Z
Reserved: 2026-07-10T14:57:34.331Z
Link: CVE-2026-15418
No data.
Status : Received
Published: 2026-09-10T18:17:55.450
Modified: 2026-09-10T18:17:55.450
Link: CVE-2026-15418
No data.
OpenCVE Enrichment
No data.
Weaknesses