CVE-2024-55414 Information

Description

A vulnerability exits in driver SmSerl64.sys in Motorola SM56 Modem WDM Driver v6.12.23.0 which allows low-privileged users to mapping physical memory via specially crafted IOCTL requests . This can be exploited for privilege escalation code execution under high privileges and information disclosure. These signed drivers can also be used to bypass the Microsoft driver-signing policy to deploy malicious code.

Reference

https://github.com/heyheysky/vulnerable-driver/blob/master/CVE-2024-55414/CVE-2024-55414_SmSerl64.sys_README.md https://us.motorola.com/

Share on: