Privilege Escalation Vulnerability in Motorola SM56 Modem Driver
CVE-2024-55414

9.8CRITICAL

Key Information:

Vendor

Motorola

Vendor
CVE Published:
7 January 2025

Badges

👾 Exploit Exists📰 News Worthy

What is CVE-2024-55414?

A vulnerability exists in the SmSerl64.sys driver of the Motorola SM56 Modem WDM Driver v6.12.23.0. This flaw allows low-privileged users to map physical memory through specially crafted IOCTL requests. Exploiting this vulnerability can lead to privilege escalation, unauthorized code execution with high privileges, and potential information disclosure. Additionally, the use of these signed drivers may enable attackers to circumvent Microsoft’s driver-signing policy to deploy malicious software.

News Articles

Microsoft Patch Tuesday security updates for January 2026 fixed actively exploited zero-day

Microsoft Patch Tuesday addressed 110 security flaws across Windows, Office, Azure, Edge, and more, including eight critical vulnerabilities.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • 👾

    Exploit known to exist

  • 📰

    First article discovered by Security Affairs

  • Vulnerability published

.