CVE-2024-43458Use of Uninitialized Resource in Microsoft Windows 10 Version 1607

Severity
7.7HIGHNVD
EPSS
2.2%
top 15.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 10

Description

Windows Networking Information Disclosure Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:NExploitability: 3.1 | Impact: 4.0

Affected Packages6 packages

NVDmicrosoft/windows< 10.0.14393.7336
NVDmicrosoft/windows_10_1607< 10.0.14393.7336
CVEListV5microsoft/windows_server_201610.0.14393.010.0.14393.7336
CVEListV5microsoft/windows_10_version_160710.0.14393.010.0.14393.7336

Patches

🔴Vulnerability Details

1
GHSA
GHSA-px24-vp7g-w3gw: Windows Networking Information Disclosure Vulnerability2024-09-10

📋Vendor Advisories

1
Microsoft
Windows Networking Information Disclosure Vulnerability2024-09-10

🕵️Threat Intelligence

3
Bleepingcomputer
Microsoft September 2024 Patch Tuesday fixes 4 zero-days, 79 flaws2024-09-10
Trendmicro
The September 2024 Security Update Review2024-09-10
Trendmicro
The September 2024 Security Update Review2024-09-10
CVE-2024-43458 — Use of Uninitialized Resource | cvebase