Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2024-21431: Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass Vulnerability

What kind of security feature could be bypassed by successfully exploiting this vulnerability?

A hypervisor-protected code integrity (HVCI) security feature bypass vulnerability could exist when Windows incorrectly allows certain kernel-mode pages to be marked as Read, Write, Execute (RWX) even with HVCI enabled. To exploit this vulnerability an attacker could run a specially crafted script at administrator level that exploits a signed driver to bypass code integrity protections in Windows.

Microsoft Security Response Center
#vulnerability#windows#Windows Hypervisor-Protected Code Integrity#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2025-0451: Chromium: CVE-2025-0451 Inappropriate implementation in Extensions API