Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-12668

Опубликовано: 16 дек. 2024
Источник: nvd
CVSS3: 8.2
EPSS Низкий

Описание

Velocidex WinPmem versions below 4.1 suffer from an Out of Bounds Write vulnerability. By using an IO Control, a user space program can trick the driver into writing a 0 into any chosen memory location. In conjunction with information leakage from the WinPmem driver, attackers can discover the location in memory for the g_CiOptions global symbol. This can be leveraged to disable signed driver enforcement on the target system - allowing attackers to load unsigned drivers.

EPSS

Процентиль: 11%
0.00039
Низкий

8.2 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 8.2
github
около 1 года назад

Velocidex WinPmem versions below 4.1 suffer from an Out of Bounds Write vulnerability whereby an attacker can subvert code-signing facilities leading to the ability to write the value zero anywhere in memory with the driver – without using the\nPMEM_WRITE_ENABLED compilation flag. This issue is remediated in version 4.1.

EPSS

Процентиль: 11%
0.00039
Низкий

8.2 High

CVSS3

Дефекты

CWE-787