CVE-2024-21305
MEDIUMWindows 10/11, Server 2019-2022 - Hyper-V Code Integrity Bypass
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-21305. PoCs published by tandasat.
AI-analyzed exploit summary This repository contains a functional proof-of-concept exploit for CVE-2024-21305, a vulnerability in Hypervisor-Protected Code Integrity (HVCI) that allows arbitrary kernel-mode code execution by exploiting writable and executable guest physical memory regions. The PoC includes detailed steps to remap memory, inject shellcode, and execute it, bypassing HVCI protections.
Description
Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass Vulnerability
Exploits (1)
This repository contains a functional proof-of-concept exploit for CVE-2024-21305, a vulnerability in Hypervisor-Protected Code Integrity (HVCI) that allows arbitrary kernel-mode code execution by exploiting writable and executable guest physical memory regions. The PoC includes detailed steps to remap memory, inject shellcode, and execute it, bypassing HVCI protections.
References (1)
Scores
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N