CVE-2026-12166

CVE-2026-12166CVE-2026-12166

Description

A NULL pointer dereference vulnerability for driver `GFAC_Sys_x64.sys` in Little Orbit GFAC allows a local attacker to cause a denial of service via crafted requests that trigger a system crash.

Scoring

CVSS 5.5 ()
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Last modified2026-07-02
Sourced from NVD. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.