Heap-based buffer overflow in Microsoft Windows and Windows Server - CVE-2024-30085
Published: June 11, 2024 / Updated: March 20, 2025
Vulnerability details
The vulnerability allows a local user can escalate privileges on the system.
The vulnerability exists due to a boundary error in Windows Cloud Files Mini Filter Driver. A local user can pass specially crafted data to the application, trigger a heap-based buffer overflow and gain elevated privileges on the target system.
Affected software
Windows Server
How to mitigate CVE-2024-30085
Windows Server - addressed in versions 2008 R2 6.1.7601.27170, 2022 10.0.20348.2522, 2022 10.0.20348.2527
Links to Public Exploits and PoC-codes
- Exploit #11234 - Windows Cloud File Mini Filer Driver Heap Overflow (March 20, 2025)
- Exploit #11036 - Exploit-PoC-para-CVE-2024-30085 ( Exploit en Python diseñado para aprovechar la vulnerabilidad de elevación de privilegios CVE-2024-30085) (January 3, 2025)
- Exploit #11035 - CVE-2024-30085 (January 3, 2025)