| [Japanese] | |
JVNDB-2026-020742 | |
Generic IO & Memory Access driver for TOSHIBA and Dynabook PCs exposes its IOCTL with insufficient access control | |
| Overview | |
Generic IO & Memory Access driver is part of a utility to configure BIOS/Supervisor passwords from within Windows. This driver is installed on PCs provided by TOSHIBA CORPORATION and Dynabook Inc. between 2009 and 2016. | |
| CVSS Severity (What is CVSS?) | |
|
CVSS V3 Severity:
Base Metrics 5.5 (Medium) [Other]
| |
| Affected Products | |
|
| |
TOSHIBA | |
Dynabook Inc. provides the list of the PC models containing the affected driver. | |
| Impact | |
A logged-in user with no administrative privilege may access physical memory. | |
| Solution | |
[Stop using the products and Use alternative methods] | |
| Vendor Information | |
Dynabook Inc. | |
| CWE (What is CWE?) | |
|
| |
| CVE (What is CVE?) | |
|
| |
| References | |
| |
| Revision History | |
|
| Date Public | 2026/06/25 |
| Date First Published | 2026/06/26 |
| Date Last Updated | 2026/06/26 |


