{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-27T08:15:03.382","vulnerabilities":[{"cve":{"id":"CVE-2024-9157","sourceIdentifier":"PSIRT@synaptics.com","published":"2025-03-11T17:16:17.330","lastModified":"2026-04-15T00:35:42.020","vulnStatus":"Deferred","cveTags":[{"sourceIdentifier":"PSIRT@synaptics.com","tags":["unsupported-when-assigned"]}],"descriptions":[{"lang":"en","value":"** UNSUPPORTED WHEN ASSIGNED ** \n\nA privilege escalation vulnerability in CxUIUSvc64.exe and\nCxUIUSvc32.exe of Synaptics audio drivers allows a local authorized\nattacker to load a DLL in a privileged process.\n\n\nOut of an abundance of caution, this CVE ID is being\nassigned to better serve our customers and ensure all who are still running\nthis product understand that the product is End-of-Life and should be removed.\nFor more information on this, refer to the CVE Record’s reference information."},{"lang":"es","value":"** NO SOPORTADO CUANDO SE ASIGNÓ ** Una vulnerabilidad de escalada de privilegios en CxUIUSvc64.exe y CxUIUSvc32.exe de los controladores de audio de Synaptics permite que un atacante local autorizado cargue una DLL en un proceso privilegiado. Por precaución, se asigna este ID de CVE para brindar un mejor servicio a nuestros clientes y garantizar que quienes aún utilizan este producto comprendan que ha llegado al final de su ciclo de vida y debe eliminarse. Para obtener más información, consulte la información de referencia del registro de CVE."}],"metrics":{"cvssMetricV31":[{"source":"PSIRT@synaptics.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":5.9}]},"weaknesses":[{"source":"PSIRT@synaptics.com","type":"Secondary","description":[{"lang":"en","value":"CWE-284"}]}],"references":[{"url":"https://www.synaptics.com/sites/default/files/2025-03/audio-driver-security-brief-2025-03-11.pdf","source":"PSIRT@synaptics.com"}]}}]}