CVE-2022-24494
HIGHWindows Ancillary Function Driver - Privilege Escalation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2022-24494. PoCs published by vportal.
AI-analyzed exploit summary This PoC demonstrates an arbitrary memory read vulnerability in the AFD driver (CVE-2022-24494) by exploiting a lack of validation in a memory address supplied from user-land, leading to a BSOD. The exploit uses a crafted input buffer to trigger the vulnerability via DeviceIoControl.
Description
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Exploits (1)
This PoC demonstrates an arbitrary memory read vulnerability in the AFD driver (CVE-2022-24494) by exploiting a lack of validation in a memory address supplied from user-land, leading to a BSOD. The exploit uses a crafted input buffer to trigger the vulnerability via DeviceIoControl.
References (1)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H