CVE Number | Vulnerability | Product | Severity | Date |
---|---|---|---|---|
CVE-2024-20659 | Windows Hyper-V Security Feature Bypass Vulnerability | Windows 11 | Important | 14-11-2024 |
Technical Information
In this vulnerability, the attack begins with the attacker gaining access to the restricted network and then try to bypass Unified Extensible Firmware Interface (UEFI) on host machine having some specific hardware requirements and meeting multiple conditions such as specific application behavior, user actions, manipulation of parameters passed to a function, and impersonation of an integrity level token.
Patch release date: Oct 08, 2024
Further information on this vulnerability is available at : CVE-2024-20659
Affected Software
Windows 10 Version 1809 for x64-based Systems,Windows Server 2019,
Windows Server 2019 (Server Core installation),
Windows Server 2022,
Windows Server 2022 (Server Core installation),
Windows 11 version 21H2 for x64-based Systems,
Windows 11 version 21H2 for ARM64-based Systems,
Windows 10 Version 21H2 for x64-based Systems,
Windows 11 Version 22H2 for ARM64-based Systems,
Windows 11 Version 22H2 for x64-based Systems,
Windows 10 Version 22H2 for x64-based Systems,
Windows 11 Version 23H2 for ARM64-based Systems,
Windows 11 Version 23H2 for x64-based Systems,
Windows Server 2022, 23H2 Edition (Server Core installation),
Windows 11 Version 24H2 for ARM64-based Systems,
Windows 11 Version 24H2 for x64-based Systems