NA

CVE-2024-20698

Published: 09/01/2024 Updated: 11/04/2024
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

Windows Kernel Elevation of Privilege Vulnerability

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows server 2019

microsoft windows server 2022

microsoft windows server 2022 23h2

microsoft windows 11 23h2

microsoft windows 10 1809

microsoft windows 11 21h2

microsoft windows 10 21h2

microsoft windows 11 22h2

microsoft windows 10 22h2

Vendor Advisories

Check Point Reference: CPAI-2024-0008 Date Published: 9 Jan 2024 Severity: High ...

Github Repositories

Patch analysis: CVE-2024-20698 - vulnerability in ntoskrnlexe (ntkrnlmpexe) CVE-2023-36900 - vulnerability in CLFSsys Exploits: Norland_unlimited_days_in_demo - allows you to bypass 15-days restriction in Norland demo game IDA plugins: Copy_RVA - plugin for coping RVA under cursor navigation_plugin - helps to navigate among the large number of unexplored functions Tool

Analysis of the vulnerability

CVE-2024-20698 About this vulnerability: msrcmicrosoftcom/update-guide/vulnerability/CVE-2024-20698 Analysis of the patch In the ntoskrnlexe we have two patched functions: sub_1406AE224 and WbAddLookupEntryEx The vulnerable function is WbAddLookupEntryEx Paths to this function: To call this function we need to call NtQuerySystemInformation with first argument 0x