CVE-2024-33055

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jan 6, 2025
Updated: Jan 10, 2025
CWE ID 416

Summary

CVE-2024-33055 is a newly identified vulnerability that affects the handling of IOCTL (Input/Output Control) calls in a specific system component. The issue results in memory corruption during the process of unmapping DMA (Direct Memory Access) buffers, potentially leading to arbitrary code execution or system crashes. This vulnerability poses a significant risk, as an attacker could exploit it to gain unauthorized access or cause denial-of-service conditions. Users or administrators are strongly advised to apply the necessary patches to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share