CVE-2024-45383

MEDIUM

Microsoft High Definition Audio Bus Driver 10.0.19041.3636 - DoS

Title source: llm
STIX 2.1

Description

A mishandling of IRP requests vulnerability exists in the HDAudBus_DMA interface of Microsoft High Definition Audio Bus Driver 10.0.19041.3636 (WinBuild.160101.0800). A specially crafted application can issue multiple IRP Complete requests which leads to a local denial-of-service. An attacker can execute malicious script/application to trigger this vulnerability.

Exploits (1)

nomisec WORKING POC 3 stars
by SpiralBL0CK · poc
https://github.com/SpiralBL0CK/CVE-2024-45383

Scores

CVSS v3 5.0
EPSS 0.0850
EPSS Percentile 92.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-664
Status published
Products (1)
microsoft/high_definition_audio_bus_driver 10.0.19041.3636
Published Sep 12, 2024
Tracked Since Feb 18, 2026