Local Privilege Escalation in VB-Audio Matrix and Matrix Coconut Drivers
CVE-2026-23763
Key Information:
- Vendor
Vb-audio Software
- Status
- Vendor
- CVE Published:
- 22 January 2026
Badges
What is CVE-2026-23763?
The VB-Audio Matrix and Matrix Coconut drivers are vulnerable to a local privilege escalation issue due to improper memory mapping in the vbmatrixvaio64*_win10.sys driver. An unprivileged attacker can exploit this by sending specific IOCTL commands that allow them to read and write kernel memory, thus enabling them to bypass kernel address space layout randomization (KASLR) and potentially escalate privileges to SYSTEM. This vulnerability arises from the mapping of a non-page-aligned buffer, which inadvertently exposes sensitive kernel objects, creating significant security risks.
Affected Version(s)
Matrix Coconut Windows 0 <= 2.0.2.2
Matrix Windows 0 <= 1.0.2.2
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
