Heap-based Buffer Overflow in Realtek RTL8811AU Drivers Enables Local Privilege Escalation
CVE-2025-8301
What is CVE-2025-8301?
A vulnerability in the Realtek RTL8811AU driver can be exploited by local attackers to escalate privileges. This flaw exists in the N6CSet_DOT11_CIPHER_DEFAULT_KEY function, where insufficient validation of user-supplied data length allows attackers to write past the end of a fixed-length heap-based buffer. If an attacker first executes low-privileged code on the system, they can utilize this vulnerability to elevate their access to the SYSTEM context and potentially execute arbitrary code, leading to unauthorized control over the host.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
RTL8811AU 1030.38.712.2019
References
CVSS V3.0
Timeline
Vulnerability published
Vulnerability Reserved
