CVE Vulnerabilities

CVE-2024-37985

Processor Optimization Removal or Modification of Security-critical Code

Published: Sep 17, 2024 | Modified: Sep 29, 2024
CVSS 3.x
5.6
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Windows Kernel Information Disclosure Vulnerability

Weakness

The developer builds a security-critical protection mechanism into the software, but the processor optimizes the execution of the program such that the mechanism is removed or modified.

Affected Software

Name Vendor Start Version End Version
Windows_11_22h2 Microsoft * 10.0.22621.3880 (excluding)
Windows_11_23h2 Microsoft * 10.0.22631.3880 (excluding)

References