Executive brief
iGameCenter is system utility software for managing gaming hardware performance. A flaw in its kernel-mode driver allows a local attacker to manipulate memory access parameters, leading to privilege escalation and potential complete system compromise with kernel-level access.
Technical details
The vulnerability is an improper privilege management flaw in the IOCTL dispatch handler (sub_11504 function) within the WinRing0x64.sys kernel driver. An attacker can craft malicious IOCTL requests to manipulate arguments such as PhysicalAddress, AlignNumer, and AlignSize, bypassing security checks. Attack requires local access to the system and the ability to send IOCTLs to the vulnerable driver. Successful exploitation grants kernel-level privileges, enabling arbitrary code execution and system takeover. Patches or mitigations from Colorful are not yet documented.
Affected products
- Colorful iGameCenter 2.0.0.81
Timeline
- 2026-08-31: disclosed