Openrazer Project develops a widely distributed open-source driver and configuration suite for gaming peripherals, with the durable signal centered on low-level memory-handling issues such as classic buffer overflows and out-of-bounds reads in its core driver component. These weakness classes are typical of kernel-mode and firmware interaction code where input validation and bounds checking are critical; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Openrazer Project over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-29023CRITICAL A buffer overflow vulnerability exists in the razermouse driver of OpenRazer up to version v3.3.0 allows attackers to cause a Denial of Service (DoS) and possibly escalate their pr | May 20, 2022 | 9.8 | 32 | NO | NO |
CVE-2022-29022CRITICAL A buffer overflow vulnerability exists in the razeraccessory driver of OpenRazer up to version v3.3.0 allows attackers to cause a Denial of Service (DoS) and possibly escalate thei | May 20, 2022 | 9.8 | 31 | NO | NO |
CVE-2022-29021CRITICAL A buffer overflow vulnerability exists in the razerkbd driver of OpenRazer up to version v3.3.0 allows attackers to cause a Denial of Service (DoS) and possibly escalate their priv | May 20, 2022 | 9.8 | 31 | NO | NO |
CVE-2022-23467MEDIUM OpenRazer is an open source driver and user-space daemon to control Razer device lighting and other features on GNU/Linux. Using a modified USB device an attacker can leak stack ad | Dec 5, 2022 | 4.6 | 19 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Openrazer Project.
Media articles that mention a CVE ID that affects a product developed by Openrazer Project — matched by CVE ID, not by vendor name.