ASA-2018-00008 – ASRock: Drivers allow non-privileged user arbitrary physical memory read/write

The drivers affected expose to a non-privileged user arbitrary access to physical memory through ioctl() system call. The ioctl argument for writing to physical memory is 0x22280C. Access to physical memory allows an attacker to directly tinker with the system and take advantage in several ways. This vulnerability allows an attacker to achieve privilege escalation, information leakage, denial of service and not limited to bypassing of mitigations and protections imposed by operating system.