VU#380058: SignalRGB kernel driver contains improper access control and IOCTL vulnerabilities

2026-06-18T08:52:09Z03f0efaea04db8f954bbec67be353aa3868c2c0373038477f30d1c32781d1e93
AppsmithBYOVDCodeMirrorDACLHTTPHaskellIOCTLNULL dereferenceNameConstraintsSecure BootSecurly Chrome ExtensionSignalIo.sysSignalRGBTLSUEFI shimX.509bootkitcrypton-x509-validationdenial of servicehardcoded keysinsecure transportkernel driverlocal privilege escalationstored XSS','cross-site scripting' (note: keep internal JSON)weak cryptography

What happened

This collection of CERT/CC vulnerability notes discloses multiple distinct vulnerabilities across several products: a SignalRGB Windows kernel driver (overly permissive DACL on \\.\SignalIo and IOCTL handlers that dereference NULL leading to local DoS/privilege abuse); the Haskell crypton-x509-validation library (fails to enforce X.509 NameConstraints allowing sub‑CA impersonation); Microsoft‑signed shim UEFI bootloaders (BYOVD-style Secure Boot bypass leading to early‑boot code execution); Securly Chrome Extension (insecure HTTP downloads, hardcoded AES keys, weak obfuscation, and exposed una

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
certcc_vulnotes
Record identifier
03f0efaea04db8f954bbec67be353aa3868c2c0373038477f30d1c32781d1e93
Enrichment time
2026-06-18T08:52:09Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.