CVE-2024-52939

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Feb 22, 2025
Updated: Feb 24, 2025
CWE ID 823

Summary

CVE-2024-52939 refers to a vulnerability in the kernel software of Guest Virtual Machines (VMs). This issue allows an attacker to issue improper commands to the GPU Firmware, causing data to be written outside the Guest VM's virtualised GPU memory. The implications of this vulnerability are significant as it could lead to potential data leakage or system instability within the Guest VM. Attackers could exploit this vulnerability by gaining unauthorized access to sensitive data or even taking control of the affected system. It is essential for organizations to apply patches and updates to mitigate this risk promptly.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share