Junglewise Threat Intelligence

CVE-2024-35250: Microsoft Windows Kernel-Mode Driver Untrusted Pointer Dereference Vulnerability

CVE-2024-35250 · Severity: critical · CVSS 7.8 · Exploited in the wild · Published 2024-12-16

Technologies: Microsoft Windows, Microsoft Windows Server 2019, Microsoft Windows Server 2022, Microsoft Windows Server 2012, Microsoft Windows 10, Microsoft Windows 11, Microsoft Windows Server 2008, Microsoft Windows Server 2016. Vendors: Microsoft.

Executive brief

The Microsoft Windows Kernel-Mode Driver contains an untrusted pointer dereference vulnerability (CWE-822). A local attacker can exploit this flaw to gain elevated privileges on the affected system.

Affected products

  • Microsoft Windows 10 up to (excluding) 10.0.10240.20680
  • Microsoft Windows 11 up to (excluding) 10.0.22631.3737
  • Microsoft Windows Server 2008
  • Microsoft Windows Server 2012
  • Microsoft Windows Server 2016 up to (excluding) 10.0.14393.7070
  • Microsoft Windows Server 2019 up to (excluding) 10.0.17763.5936
  • Microsoft Windows Server 2022 up to (excluding) 10.0.20348.2522

Timeline

  • 2024-06-11: disclosed: Initial publication by Microsoft and NVD
  • 2024-12-16: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
  • 2024-12-16: exploited: Confirmed as exploited in the wild per CISA KEV entry

Related threats