IOCTL Handler Vulnerability in BioStar Temperature Monitor Utility by BioStar
CVE-2026-94142
9.3CRITICAL
What is CVE-2026-94142?
A security flaw in the BioStar Temperature Monitor Utility, specifically within the IOCTL Handler's function sub_1105C, can lead to a write-what-where condition by manipulating the PhysicalAddress argument. This vulnerability allows local attackers to exploit the utility, potentially leading to arbitrary memory read and write access. Despite public disclosure of the exploit, the vendor has not responded to address the issue.
Affected Version(s)
Temperature Monitor Utility 1.2.1806.2200
