CVE-2024-43554

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Oct 8, 2024
Updated: Oct 17, 2024
CWE ID 212

Summary

CVE-2024-43554 is a newly disclosed vulnerability affecting Windows Kernel-Mode Drivers. This issue permits an attacker to gain unauthorized access to sensitive information, specifically driver details, through a specially crafted input. Successful exploitation could lead to potential security risks, including privilege escalation and system compromise. Microsoft is actively working on a patch to address this vulnerability, and it is recommended that users install updates as soon as they become available to protect their systems. Until then, implementing network segmentation and access control measures can help minimize potential exposure.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share