CVE-2024-38106CISA KEV
Microsoft Windows Kernel Privilege Escalation Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Windows Kernel contains an unspecified vulnerability that allows for privilege escalation, enabling a local attacker to gain SYSTEM privileges. Successful exploitation of this vulnerability requires an attacker to win a race condition.
- Product
- Windows
- Added to KEV
- 13 Aug 2024
- Federal remediation due
- 3 Sep 2024
- Known ransomware use
- Not reported