CVE-2026-94128 | BioStar VIVID LED DJ 4.0.2411.1500 IOCTL BS_LED64.sys sub_1105C AssociatedIrp write-what-where
A vulnerability has been found in BioStar VIVID LED DJ 4.0.2411.1500 and classified as critical. This affects the function sub_1105C of the file BS_LED64.sys of the component IOCTL Handler. The manipulation of the argument AssociatedIrp leads to write-what-where condition.
This vulnerability is uniquely identified as CVE-2026-94128. Local access is required to approach this attack. Moreover, an exploit is present.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More