Buffer overflow in Synapse - CVE-2017-14398
Published: September 13, 2017 / Updated: August 8, 2020
Synapse
Detailed vulnerability description
The vulnerability allows a local authenticated user to execute arbitrary code.
rzpnk.sys in Razer Synapse 2.20.15.1104 allows local users to read and write to arbitrary memory locations, and consequently gain privileges, via a methodology involving a handle to DevicePhysicalMemory, IOCTL 0x22A064, and ZwMapViewOfSection.