CVE-2024-43640

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Nov 12, 2024
Updated: Nov 13, 2024
CWE ID 415

Summary

CVE-2024-43640 is a newly disclosed vulnerability affecting Windows Kernel-Mode Drivers. This elevation of privilege vulnerability allows an attacker to gain higher system privileges, potentially leading to serious security consequences. By exploiting this weakness, an attacker can execute arbitrary code with kernel-level access, bypassing important security safeguards. The full impact of this vulnerability is still being assessed, but it is recommended that affected systems be updated as soon as possible to mitigate potential risks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows
  • Microsoft Windows 11

Affected Vendors

  • Microsoft