Out of Bounds Write Vulnerability in Velocidex WinPmem
CVE-2024-12668
What is CVE-2024-12668?
CVE-2024-12668 is a critical Out of Bounds Write vulnerability in Velocidex WinPmem versions prior to 4.1. This flaw enables attackers to compromise code-signing mechanisms, leading to a potential scenario where the attacker can manipulate memory by writing the value zero to arbitrary locations. This vulnerability poses a significant risk as it allows for unauthorized memory manipulation without the requirement of the PMEM_WRITE_ENABLED compilation flag. Users of affected versions are strongly urged to upgrade to WinPmem version 4.1 or later to mitigate this security threat.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
WinPmem < 4.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
