CVE-2024-21338 - Microsoft Windows Kernel Exposed IOCTL with Insufficient Access Control Vulnerability
Project:Microsoft
Product:Windows
Date Added:2024-03-04Due Date:2024-03-25
Vulnerability Name
Microsoft Windows Kernel Exposed IOCTL with Insufficient Access Control Vulnerability
Description
Microsoft Windows Kernel contains an exposed IOCTL with insufficient access control vulnerability within the IOCTL (input and output control) dispatcher in appid.sys that allows a local attacker to achieve privilege escalation.
Known To Be Used in Ransomware Campaigns?
Known
Action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Additional Notes
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21338
https://nvd.nist.gov/vuln/detail/CVE-2024-21338
Related News Articles
Microsoft's Patch Tuesday Fixes 63 Flaws, Including Two Under Active ExploitationFebruary 12, 2025
New Mallox ransomware Linux variant based on leaked Kryptina codeSeptember 24, 2024
North Korean Hackers Deploy FudModule Rootkit via Chrome Zero-Day ExploitAugust 31, 2024
Microsoft Patches Zero-Day Flaw Exploited by North Korea’s Lazarus GroupAugust 19, 2024