CVE-2026-80116
Received Received - Intake

Privilege Escalation in PassMark PerformanceTest via DirectIo64.sys

Vulnerability report for CVE-2026-80116, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-04

Last updated on: 2026-09-04

Assigner: VulnCheck

Description

PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.1 build 1016 contain a privilege escalation vulnerability in DirectIo64.sys that allows local users to modify hardware configuration by exploiting exposed IOCTLs with no validation on device selection, register offset, or value. Attackers can obtain a device handle and issue arbitrary PCI configuration space read/write operations to enable Bus Master DMA on any PCI device, halt storage controller I/O by clearing command registers, or remap Base Address Registers to redirect DMA to an attacker-chosen physical address.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-04
Last Modified
2026-09-04
Generated
2026-09-05
AI Q&A
2026-09-04
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 3 associated CPEs
Vendor Product Version / Range
passmark performancetest to 11.1.1012 (exc)
passmark burnintest to 11.1.1000 (exc)
passmark osforensics to 11.1.1016 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-782 The product implements an IOCTL with functionality that should be restricted, but it does not properly enforce access control for the IOCTL.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This is a privilege escalation vulnerability in PassMark PerformanceTest, BurnInTest, and OSForensics software versions before 11.1 build 1012, 1000, and 1016 respectively. The issue lies in the DirectIo64.sys driver which exposes IOCTLs without proper validation. Attackers can exploit this to modify hardware configuration by performing arbitrary PCI configuration space read/write operations.

Detection Guidance

Detection involves checking for vulnerable versions of PassMark PerformanceTest, BurnInTest, or OSForensics. Inspect installed software versions and look for DirectIo64.sys driver presence. No specific commands are provided in the context.

Impact Analysis

An attacker with local access could escalate privileges, modify system hardware settings, disable storage controllers, or redirect DMA operations to malicious memory locations. This could lead to system instability, data corruption, or unauthorized access to sensitive information.

Compliance Impact

This vulnerability allows local users to modify hardware configuration via exposed IOCTLs, enabling arbitrary PCI operations. Such unauthorized access could lead to data breaches or system manipulation, which may violate compliance requirements under GDPR (data integrity and security) and HIPAA (protected health information integrity).

Mitigation Strategies

Update PassMark PerformanceTest to version 11.1 build 1012 or later, BurnInTest to 11.1 build 1000 or later, and OSForensics to 11.1 build 1016 or later. Remove or restrict access to DirectIo64.sys if updates are not immediately possible.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-80116. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart