CVE-2024-21385

CVSS v3 Score
8.3
High

Vulnerability Description

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

CVSS:8.3(High)

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

CVSS:8.3(High)

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVSS:8.3(High)

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

CVSS:8.3(High)

Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability

CVSS:8.4(High)

While processing modem SSR after IMS is registered, the IMS data daemon is restarted but the ipc_dataHandle is no longer available. Consequently, the DPL thread frees the internal memory for dataDHand...

CVSS:8.4(High)

In startDevice of AAudioServiceStreamBase.cpp there is a possible out of bounds write due to a use after free. This could lead to local arbitrary code execution with no additional execution privileges...