When you purchase through links on our site, we may earn an affiliate commission.Heres how it works.
Googles researchers called the vulnerability EntrySign.
The vulnerability is tracked as CVE-2024-56161, and was given a severity score of 7.2/10 (high).
In theory, a threat actor could abuse the vulnerability to bypass security mechanisms and trigger information leakage.
In practice, however, its a lot more difficult than that.
The attackers would need to have local admin privileges beforehand, which is difficult enough on its own.
Furthermore, the attacks would only persist until the next system reboot.