PT-2024-25161 · Realtek Semiconductor · Realtek High Definition Audio Function Driver

Published

2024-05-22

·

Updated

2024-08-26

·

CVE-2024-33225

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Realtek(r) High Definition Audio Function Driver version 6.0.9549.1
Description An issue in the component RTKVHD64.sys of Realtek Semiconductor Corp Realtek(r) High Definition Audio Function Driver allows attackers to escalate privileges and execute arbitrary code via sending crafted IOCTL requests.
Recommendations For version 6.0.9549.1, consider disabling the RTKVHD64.sys component until a patch is available to prevent exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2024-33225

Affected Products

Realtek High Definition Audio Function Driver