EXPOSURES › CVE-2024-30088
CVE-2024-30088
CRITICAL ⌖ ON CISA KEV · EXPLOITEDA TOCTOU race condition in the Windows kernel allows privilege escalation and is actively exploited in the wild.
This kernel vulnerability enables attackers to escalate privileges, potentially leading to full system compromise. DIB organizations must patch this immediately as it is on CISA's KEV list and linked to ransomware campaigns. Failure to patch exposes critical infrastructure to unauthenticated attackers.
Shame score — A known kernel vulnerability actively exploited in the wild for ransomware, indicating severe negligence and avoidable risk.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Microsoft Windows Kernel contains a time-of-check to time-of-use (TOCTOU) race condition vulnerability that could allow for privilege escalation.
| PRODUCT | STATUS |
|---|---|
| Azure Commercial Cloud Microsoft |
Authorized |
| Azure Government (includes Dynamics 365) Microsoft |
Authorized |
| Microsoft Office 365 GCC High Microsoft |
In Process |
| Office 365 Multi-Tenant & Supporting Services Microsoft |
Authorized |