#VU20910 Permissions, Privileges, and Access Controls in Asus Precision TouchPad - CVE-2019-10709
Published: September 6, 2019 / Updated: June 17, 2021
Asus Precision TouchPad
Asus
Description
The vulnerability allows a remote attacker to escalate privileges on the system.
The vulnerability exists due to the "AsusPTPFilter.sys" driver has a Pool Overflow associated with the \\.\AsusTP device. A remote attacker can cause a denial of service attack or potentially privilege escalation via a crafted "DeviceIoControl" call.