An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys driver version 10.0.22000.593 as part of Windows 11 version 22000.593 and version 10.0.20348.643 as part of Windows Server 2022 version 20348.643. A specially-crafted set of syscalls can lead to a reboot. An unprivileged user can run specially-crafted code to trigger Denial Of Service.
References
Configurations
No configuration.
History
18 Dec 2024, 23:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-18 23:15
Updated : 2024-12-18 23:15
NVD link : CVE-2022-40733
Mitre link : CVE-2022-40733
CVE.ORG link : CVE-2022-40733
JSON object : View
Products Affected
No product.
CWE
CWE-476
NULL Pointer Dereference