Yenkee Hornet Gaming Mouse Buffer Overrun Vulnerability in Driver GM312Fltr.sys Allowing Denial-of-Service

Vulnerability

A buffer overrun vulnerability has been identified in the Yenkee Hornet Gaming Mouse driver GM312Fltr.sys. This vulnerability allows attackers to crash the system by sending oversized input through the DeviceIoControl interface. Exploitation of this vulnerability leads to a kernel-level system crash.

Impact

Exploitation of this vulnerability causes a kernel-level system crash, disrupting normal operation and potentially leading to a denial-of-service condition.

Reproduction

The vulnerability can be reproduced by sending a 2000-byte buffer through the DeviceIoControl function to the GM312Fltr device. This can be done using a Python script that utilizes the ctypes library to call the DeviceIoControl function with the oversized buffer, triggering the buffer overrun and causing the system to crash.

Added: Jan 16, 2026, 12:47 AM
Updated: Jan 16, 2026, 12:47 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
4.6
remediation
0.0
relevance
2.1
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.