CVE-2024-45383

MEDIUM

Microsoft High Definition Audio Bus Driver 10.0.19041.3636 - DoS

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2024-45383. PoCs published by SpiralBL0CK.

AI-analyzed exploit summary This PoC demonstrates a vulnerability in Windows WMI (Windows Management Instrumentation) by leveraging the WmiOpenBlock, WmiQueryAllData, and WmiCloseBlock functions to interact with the WmiMonitorID_GUID. The code initializes a handle to the WMI block, which could be exploited for privilege escalation or information disclosure.

Description

A mishandling of IRP requests vulnerability exists in the HDAudBus_DMA interface of Microsoft High Definition Audio Bus Driver 10.0.19041.3636 (WinBuild.160101.0800). A specially crafted application can issue multiple IRP Complete requests which leads to a local denial-of-service. An attacker can execute malicious script/application to trigger this vulnerability.

Exploits (1)

nomisec WORKING POC 3 stars
by SpiralBL0CK · poc
https://github.com/SpiralBL0CK/CVE-2024-45383

This PoC demonstrates a vulnerability in Windows WMI (Windows Management Instrumentation) by leveraging the WmiOpenBlock, WmiQueryAllData, and WmiCloseBlock functions to interact with the WmiMonitorID_GUID. The code initializes a handle to the WMI block, which could be exploited for privilege escalation or information disclosure.

Classification
Working Poc 90%
Attack Type
Lpe
Complexity
Moderate
Reliability
Theoretical
Target: Microsoft Windows (WMI component)
No auth needed
Prerequisites: Access to a vulnerable Windows system · Ability to execute arbitrary code
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (2)

Core 2

Scores

CVSS v3 5.0
EPSS 0.0141
EPSS Percentile 69.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-664
Status published
Products (1)
microsoft/high_definition_audio_bus_driver 10.0.19041.3636
Published Sep 12, 2024
Tracked Since Feb 18, 2026