Executive brief
Ludashi is a system utility tool for Windows computers. A flaw in its kernel driver (ComputerZ_x64.sys) allows a local attacker to manipulate memory arguments and read sensitive system information, potentially exposing internal data or memory contents that should remain protected.
Technical details
An information disclosure vulnerability exists in the ComputerZ_x64.sys kernel driver used by Ludashi 6.1026.4715.714. The vulnerability is in the function sub_11008, where improper validation of the PhysicalAddress argument allows a local attacker to craft a malicious request that reads arbitrary physical memory. Attack vector is local; the attacker must have local access to the system. The exploit code has been published, and the vendor (Chengdu Qilu Technology) has not responded to early disclosure attempts. A patch status is unknown.
Affected products
- Chengdu Qilu Technology Ludashi 6.1026.4715.714
Timeline
- 2026-09-13: disclosed