Colorful · Gamecenter · CVE-2026-94403
**Name of the Vulnerable Software and Affected Versions**
ColorFul iGameCenter version 1.0.3.4
**Description**
A weakness exists in the IOCTL Handler component within the `ene.sys` library. Specifically, the `sub 140001AF0()` function is susceptible to untrusted pointer dereference, which occurs when a program uses a pointer without verifying that it points to a valid memory location. This issue can only be exploited by a local attacker.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.