cve/2024/CVE-2024-45383.md
2025-09-29 16:08:36 +00:00

18 lines
953 B
Markdown

### [CVE-2024-45383](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-45383)
![](https://img.shields.io/static/v1?label=Product&message=HDAudBus.sys&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3D%2010.0.19041.3636%20(WinBuild.160101.0800)%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-664%3A%20Improper%20Control%20of%20a%20Resource%20Through%20its%20Lifetime&color=brighgreen)
### Description
A mishandling of IRP requests vulnerability exists in the HDAudBus_DMA interface of Microsoft High Definition Audio Bus Driver 10.0.19041.3636 (WinBuild.160101.0800). A specially crafted application can issue multiple IRP Complete requests which leads to a local denial-of-service. An attacker can execute malicious script/application to trigger this vulnerability.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/SpiralBL0CK/CVE-2024-45383