CVE Vulnerabilities

CVE-2024-37985

Processor Optimization Removal or Modification of Security-critical Code

Published: Sep 17, 2024 | Modified: Sep 29, 2024
CVSS 3.x
5.6
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Windows Kernel Information Disclosure Vulnerability

Weakness

The developer builds a security-critical protection mechanism into the software, but the processor optimizes the execution of the program such that the mechanism is removed or modified.

Affected Software

NameVendorStart VersionEnd Version
Windows_11_22h2Microsoft*10.0.22621.3880 (excluding)
Windows_11_23h2Microsoft*10.0.22631.3880 (excluding)

References