CVE-2024-45383

MEDIUM

Microsoft High Definition Audio Bus Driver 10.0.19041.3636 - DoS

Title source: llm

Description

A mishandling of IRP requests vulnerability exists in the HDAudBus_DMA interface of Microsoft High Definition Audio Bus Driver 10.0.19041.3636 (WinBuild.160101.0800). A specially crafted application can issue multiple IRP Complete requests which leads to a local denial-of-service. An attacker can execute malicious script/application to trigger this vulnerability.

Exploits (1)

nomisec WORKING POC 3 stars
by SpiralBL0CK · poc
https://github.com/SpiralBL0CK/CVE-2024-45383

Scores

CVSS v3 5.0
EPSS 0.0850
EPSS Percentile 92.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H

Classification

CWE
CWE-664
Status published

Affected Products (1)

microsoft/high_definition_audio_bus_driver

Timeline

Published Sep 12, 2024
Tracked Since Feb 18, 2026