CVE-2024-38144
HIGHKernel Streaming WOW Thunk Service Driver - Privilege Escalation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-38144. PoCs published by Dor00tkit.
AI-analyzed exploit summary This repository contains a functional exploit PoC for CVE-2024-38144, which leverages a malformed output buffer length in an IOCTL_KS_ENABLE_EVENT call to trigger a vulnerability in the Windows Kernel Streaming (KS) driver. The code demonstrates the exploitation of a buffer overflow or similar memory corruption issue by sending a crafted IOCTL request with an invalid buffer length (0xFFFFFFF1).
Description
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
Exploits (1)
This repository contains a functional exploit PoC for CVE-2024-38144, which leverages a malformed output buffer length in an IOCTL_KS_ENABLE_EVENT call to trigger a vulnerability in the Windows Kernel Streaming (KS) driver. The code demonstrates the exploitation of a buffer overflow or similar memory corruption issue by sending a crafted IOCTL request with an invalid buffer length (0xFFFFFFF1).
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H