logo

CVE-2024-21338 - Microsoft Windows Kernel Exposed IOCTL with Insufficient Access Control Vulnerability

Project:Microsoft

Product:Windows

Date Added:2024-03-04Due Date:2024-03-25

Vulnerability Name

Microsoft Windows Kernel Exposed IOCTL with Insufficient Access Control Vulnerability

Description

Microsoft Windows Kernel contains an exposed IOCTL with insufficient access control vulnerability within the IOCTL (input and output control) dispatcher in appid.sys that allows a local attacker to achieve privilege escalation.

Known To Be Used in Ransomware Campaigns?

Known

Action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Additional Notes

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21338

https://nvd.nist.gov/vuln/detail/CVE-2024-21338

Related News Articles

Microsoft's Patch Tuesday Fixes 63 Flaws, Including Two Under Active ExploitationFebruary 12, 2025

New Mallox ransomware Linux variant based on leaked Kryptina codeSeptember 24, 2024

North Korean Hackers Deploy FudModule Rootkit via Chrome Zero-Day ExploitAugust 31, 2024

Microsoft Patches Zero-Day Flaw Exploited by North Korea’s Lazarus GroupAugust 19, 2024