Improper Control of a Resource Through its Lifetime
CVE-2024-45383
Summary
A mishandling of IRP requests vulnerability exists in the HDAudBus_DMA interface of Microsoft High Definition Audio Bus Driver 10.0.19041.3636 (WinBuild.160101.0800). A specially crafted application can issue multiple IRP Complete requests which leads to a local denial-of-service. An attacker can execute malicious script/application to trigger this vulnerability.
- LOW
- LOCAL
- NONE
- UNCHANGED
- REQUIRED
- LOW
- NONE
- HIGH
CWE-664 - Improper Control of a Resource Through its Lifetime
The software does not maintain or incorrectly maintains control over a resource throughout its lifetime of creation, use, and release.
References
Advisory Timeline
- Published