Executive brief
The Microsoft Windows Kernel-Mode Driver contains an untrusted pointer dereference vulnerability (CWE-822). A local attacker can exploit this flaw to gain elevated privileges on the affected system.
Affected products
- Microsoft Windows 10 up to (excluding) 10.0.10240.20680
- Microsoft Windows 11 up to (excluding) 10.0.22631.3737
- Microsoft Windows Server 2008
- Microsoft Windows Server 2012
- Microsoft Windows Server 2016 up to (excluding) 10.0.14393.7070
- Microsoft Windows Server 2019 up to (excluding) 10.0.17763.5936
- Microsoft Windows Server 2022 up to (excluding) 10.0.20348.2522
Timeline
- 2024-06-11: disclosed: Initial publication by Microsoft and NVD
- 2024-12-16: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
- 2024-12-16: exploited: Confirmed as exploited in the wild per CISA KEV entry