cve/2024/CVE-2024-9157.md

18 lines
1.0 KiB
Markdown
Raw Normal View History

2025-09-29 16:08:36 +00:00
### [CVE-2024-9157](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-9157)
![](https://img.shields.io/static/v1?label=Product&message=Synaptics%20Audio%20Driver&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=0%3C%209.0.282.*%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-284%20Improper%20Access%20Control&color=brighgreen)
### Description
** UNSUPPPORTED WHEN ASSIGNED ** ** UNSUPPORTED WHEN ASSIGNED ** A privilege escalation vulnerability in CxUIUSvc64.exe andCxUIUSvc32.exe of Synaptics audio drivers allows a local authorizedattacker to load a DLL in a privileged process.Out of an abundance of caution, this CVE ID is beingassigned to better serve our customers and ensure all who are still runningthis product understand that the product is End-of-Life and should be removed.For more information on this, refer to the CVE Records reference information.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/ghostbyt3/patch-tuesday