CVE-2024-43059

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 3, 2025
Updated: Mar 6, 2025
CWE ID 416

Summary

CVE-2024-43059 is a newly disclosed vulnerability affecting the HGSL memory node. The issue arises when invoking IOCTL calls from the user space, leading to memory corruption. An attacker can potentially exploit this vulnerability by sending malicious IOCTL commands to the HGSL memory node, resulting in unintended memory modifications and potential code execution. This can allow an attacker to gain unauthorized access to sensitive information or execute arbitrary code with the privileges of the affected system. Users are strongly advised to apply the upcoming patch to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share