CVE-2024-38406

CVSS 3.1 Score 7.0 of 10 (high)

Details

Published Nov 4, 2024
Updated: Nov 7, 2024
CWE ID 367

Summary

CVE-2024-38406 is a newly identified vulnerability affecting the JPEG Encoder driver. The issue involves memory corruption during the processing of IOCTL (Input/Output Control) calls. An attacker could potentially exploit this flaw to execute arbitrary code or cause a denial-of-service condition, resulting in significant security risks for affected systems. System administrators and organizations are advised to apply patches or updates as soon as they become available to mitigate these risks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share