CVE-2024-38217 - Microsoft Windows Mark of the Web (MOTW) Protection Mechanism Failure Vulnerability
Project:Microsoft
Product:Windows
Date Added:2024-09-10Due Date:2024-10-01
Vulnerability Name
Microsoft Windows Mark of the Web (MOTW) Protection Mechanism Failure Vulnerability
Description
Microsoft Windows Mark of the Web (MOTW) contains a protection mechanism failure vulnerability that allows an attacker to bypass MOTW-based defenses. This can result in a limited loss of integrity and availability of security features such as Protected View in Microsoft Office, which rely on MOTW tagging.
Known To Be Used in Ransomware Campaigns?
Unknown
Action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Additional Notes
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38217
https://nvd.nist.gov/vuln/detail/CVE-2024-38217
Related News Articles
CISA warns of Windows flaw used in infostealer malware attacksSeptember 17, 2024
Windows vulnerability abused braille “spaces” in zero-day attacksSeptember 16, 2024
Microsoft Issues Patches for 79 Flaws, Including 3 Actively Exploited Windows FlawsSeptember 11, 2024
Microsoft fixes 4 exploited zero-days and a code defect that nixed earlier security fixesSeptember 11, 2024
Microsoft fixes Windows Smart App Control zero-day exploited since 2018September 11, 2024