CVE-2024-35250

Published Jun 11, 2024

Last updated 5 months ago

Overview

Description
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
Source
secure@microsoft.com
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Primary
Base score
7.8
Impact score
5.9
Exploitability score
1.8
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

nvd@nist.gov
CWE-119
secure@microsoft.com
CWE-822

Social media

Hype score
Not currently trending
  1. GitHub - varwara/CVE-2024-35250: PoC for the Untrusted Pointer Dereference in the ks.sys driver https://t.co/Fjh7U4m7sc

    @akaclandestine

    27 Oct 2024

    1206 Impressions

    6 Retweets

    14 Likes

    6 Bookmarks

    0 Replies

    0 Quotes

  2. Windows カーネルモード・ドライバの脆弱性 CVE-2024-35250 が FIX:PoC も公開 https://t.co/a5mn5wyatr #BugBounty #CyberAttack #Devcore #EoP #Exploit #PoCExploit #Pwn2Own #Vulnerability #Windows

    @iototsecnews

    23 Oct 2024

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. The severity of the Elevation of Privilege - Windows Kernel-Mode Driver (CVE-2024-35250) vulnerability has increased. On October 13, a PoC of the exploit, released by user varwara, appeared on GitHub. #Microsoft #kssys #KernelStreaming #DEVCORE ➡️ https://t.co/FyCxnFMmrI https:

    @leonov_av

    22 Oct 2024

    4 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. #exploit 1. CVE-2024-35250: Windows 11 Kernel-Mode Driver EoP/LPE https://t.co/UxEoBwWNoA 2. CVE-2024-44193: iTunes for Windows - LPE https://t.co/C3p0B828YB 3. CVE-2024-9464: Palo Alto Expedition Authenticated CI https://t.co/5OPNnJ7NGY

    @42mayfly

    21 Oct 2024

    64 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  5. GitHub - varwara/CVE-2024-35250: PoC for the Untrusted Pointer Dereference in the ks.sys driver https://t.co/Fjh7U4m7sc

    @akaclandestine

    19 Oct 2024

    1158 Impressions

    4 Retweets

    12 Likes

    4 Bookmarks

    0 Replies

    0 Quotes

  6. #exploit 1. CVE-2024-35250: Windows 11 Kernel-Mode Driver EoP/LPE https://t.co/JCHRLHXVib 2. CVE-2024-44193: iTunes for Windows - LPE https://t.co/se0HV2pUtI 3. CVE-2024-9464: Palo Alto Expedition Authenticated CI https://t.co/G5lQTBLjx8

    @airacaaaa

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. #exploit Streaming vulnerabilities from Windows Kernel - Proxying to Kernel Part 1 (CVE-2024-30084, CVE-2024-35250): https://t.co/PCeCq0JWCZ Part 2 (CVE-2024-30090): https://t.co/TjOAfoSNWv ]-> https://t.co/heJDE8ujc3

    @ksg93rd

    2654 Impressions

    13 Retweets

    55 Likes

    21 Bookmarks

    0 Replies

    0 Quotes

  8. #exploit Streaming vulnerabilities from Windows Kernel - Proxying to Kernel Part 1 (CVE-2024-30084, CVE-2024-35250): https://t.co/aQ7z3rFyrV Part 2 (CVE-2024-30090): https://t.co/qcD48Qk9xt ]-> https://t.co/TXaaRcNG71

    @airacaaaa

    30 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. 【情报】新Windows提权漏洞CVE-2024-35250🚨 PoC for the Untrusted Pointer Dereference in the ks.sys driver😢 Github地址:https://t.co/qHy6OicYzT 提权适用的Windows版本挺多的,但动作很明显,实测大部分XDR都拦截动态行为了🫣 #cybersecurity #CyberSafety #redteam #blueteam #exploit #CVE https://t.co/rAgpZJPnmL

    @AabyssZG

    6731 Impressions

    37 Retweets

    113 Likes

    56 Bookmarks

    3 Replies

    0 Quotes

  10. 1. CVE-2024-35250: Windows 11 Kernel-Mode Driver EoP/LPE https://t.co/vCoFWg4cK2 2. CVE-2024-44193: iTunes for Windows - LPE https://t.co/TaEcUZybXC 3. CVE-2024-9464: Palo Alto Expedition Authenticated CI https://t.co/nZDbcw79y5

    @ShaiiikShoaiiib

    71 Impressions

    0 Retweets

    5 Likes

    2 Bookmarks

    0 Replies

    0 Quotes

Configurations