An Exposed IOCTL with Insufficient Access Control vulnerability in AsusPTPFilter allows a local user to bypass driver security mechanisms and obtain restricted touchpad information or render the touchpad unusable via crafted IOCTL requests.Refer to the '
Security Update for ASUS Precision Touchpad ' section on the ASUS Security Advisory for more information.

Project Subscriptions

Vendors Products
Asusptpfilter Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References
History

Fri, 08 May 2026 03:45:00 +0000

Type Values Removed Values Added
Title Local Privilege Escalation via Unsane IOCTL in AsusPTPFilter Driver

Fri, 08 May 2026 02:45:00 +0000

Type Values Removed Values Added
Description An Exposed IOCTL with Insufficient Access Control vulnerability in AsusPTPFilter allows a local user to bypass driver security mechanisms and obtain restricted touchpad information or render the touchpad unusable via crafted IOCTL requests.Refer to the ' Security Update for ASUS Precision Touchpad ' section on the ASUS Security Advisory for more information.
First Time appeared Asus
Asus asusptpfilter
Weaknesses CWE-782
CPEs cpe:2.3:a:asus:asusptpfilter:*:*:*:*:*:*:*:*
Vendors & Products Asus
Asus asusptpfilter
References
Metrics cvssV4_0

{'score': 2, 'vector': 'CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: ASUS

Published:

Updated: 2026-05-08T02:00:26.422Z

Reserved: 2026-04-21T06:25:50.061Z

Link: CVE-2026-6737

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-05-08T03:16:24.990

Modified: 2026-05-08T03:16:24.990

Link: CVE-2026-6737

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-05-08T03:30:44Z

Weaknesses