Vulnerability Description
A vulnerability exits in driver SmSerl64.sys in Motorola SM56 Modem WDM Driver v6.12.23.0, which allows low-privileged users to mapping physical memory via specially crafted IOCTL requests . This can be exploited for privilege escalation, code execution under high privileges, and information disclosure. These signed drivers can also be used to bypass the Microsoft driver-signing policy to deploy malicious code.
CVSS Score
CRITICAL
Related Weaknesses (CWE)
References
- https://github.com/heyheysky/vulnerable-driver/blob/master/CVE-2024-55414/CVE-20
- https://us.motorola.com/
FAQ
What is CVE-2024-55414?
CVE-2024-55414 is a vulnerability with a CVSS score of 9.8 (CRITICAL). A vulnerability exits in driver SmSerl64.sys in Motorola SM56 Modem WDM Driver v6.12.23.0, which allows low-privileged users to mapping physical memory via specially crafted IOCTL requests . This can ...
How severe is CVE-2024-55414?
CVE-2024-55414 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2024-55414?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.