CVE-2024-38140

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Aug 13, 2024
Updated: Aug 16, 2024
CWE ID 416

Summary

CVE-2024-38140 is a newly disclosed vulnerability that affects the Windows Reliable Multicast Transport Driver (RMCAST). This issue permits remote code execution, meaning an attacker can exploit it to gain unauthorized access to affected systems and run malicious code. Successful exploitation could result in significant harm, including data theft, system damage, or unauthorized network access. The vulnerability exists due to improper handling of multicast packets, leaving Windows systems potentially exposed. Microsoft is working on a patch to mitigate the risk, and users are urged to apply it as soon as it becomes available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows
  • Microsoft Windows 11
  • Microsoft Windows Server 2008

Affected Vendors

  • Microsoft