CVE-2026-56129: Medium severity Toshiba Generic IO & Memory Access driver vulnerability
Generic IO & Memory Access driver for PCs provided by TOSHIBA CORPORATION and Dynabook Inc. exposes its IOCTL with insufficient access control. A logged-in user with no administrative privilege may access physical memory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-56129?
The severity of CVE-2026-56129 is classified as medium with a score of 5.5.
How does CVE-2026-56129 affect system security?
CVE-2026-56129 allows a logged-in user without administrative privileges to access physical memory due to insufficient access control.
What software is impacted by CVE-2026-56129?
The vulnerability affects the Toshiba Generic IO & Memory Access driver and the Dynabook Generic IO & Memory Access driver.
Can CVE-2026-56129 be exploited remotely?
CVE-2026-56129 requires local access; it cannot be exploited remotely.
What steps can be taken to mitigate CVE-2026-56129?
To mitigate CVE-2026-56129, it is recommended to update the affected drivers to the latest version released by Toshiba or Dynabook.