Heap-Based Buffer Overflow Vulnerability in Moore Threads MTT S80 Driver Package
CVE-2026-94424

9.3CRITICAL

Key Information:

Vendor
CVE Published:
21 September 2026

What is CVE-2026-94424?

A vulnerability exists in the Moore Threads MTT S80 Driver Package affecting versions up to 340.150. The issue is located in the IOCTL Handler function sub_140001000 within the mtdispkm64.sys library, leading to a heap-based buffer overflow. This vulnerability requires local access for exploitation. Despite early notification, there has been no response from the vendor, raising concerns about remediation efforts.

Affected Version(s)

MTT S80 Driver Package 340.150

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Element2023H (VulDB User)
VulDB CNA Team
.