VDB

CVE-2026-14961

CVE-2026-14961 PUBLISHED CVSS 6.2 MEDIUM

Reported by certcc · Published July 15, 2026

Pegatron `Tdelo64.sys` exposes a privileged device interface, `\\.\TdeIo`, that fails to properly restrict access to sensitive IOCTL functionality. The driver's IOCTL dispatcher does not validate caller privileges or verify user-supplied kernel memory addresses before performing memory operations. By sending crafted requests to IOCTL, a local attacker can achieve arbitrary kernel memory read and write operations, leading to privilege escalation to `NT AUTHORITY\SYSTEM`, security product bypass, credential theft, or complete system compromise.

Risk Scores

CVSS 3.1
6.2
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Affected Products

VendorProductVersions
Pegatron Corp.Tdelo64.sys02-17-2025
Pegatron Corp.Tdelo64.sys02-17-2025

Timeline

  • Jul 15, 2026 Coalition ESS Score
  • Jul 15, 2026 CVE Published
  • Jul 15, 2026 CVE Updated

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›