Realtek rtl81xx SDK Wi-Fi Driver Privilege Escalation Vulnerability

Vulnerability

A heap-based buffer overflow vulnerability has been identified in the Realtek rtl81xx SDK Wi-Fi driver, specifically within the rtwlanu component. This vulnerability allows local attackers to escalate privileges on affected systems. The issue arises in the N6CSet_DOT11_CIPHER_DEFAULT_KEY function, where user-supplied data is not properly validated before being copied to a fixed-length heap-based buffer. As a result, an attacker with access to execute low-privileged code can exploit this vulnerability to gain elevated privileges and execute arbitrary code with SYSTEM rights.

Impact

Exploitation of this vulnerability leads to local privilege escalation, allowing an attacker to execute arbitrary code in the context of the SYSTEM user.

Remediation

Users can upgrade to version 1030.44.1204.2024 to address this vulnerability.

Added: Sep 2, 2025, 8:18 PM
Updated: Sep 2, 2025, 8:18 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
3.3
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.