CVE-2026-8050
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/06/2026
Last modified:
22/06/2026
Description
In SignalRGB versions prior to 1.3.7.0, seven of the thirteen IOCTL handlers dereference the SystemBuffer pointer without first verifying that it is non-NULL. Sending an IOCTL with an empty input buffer causes a NULL pointer dereference, resulting in a kernel crash.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH



