CVE-2024-36054: Marvin Test Hw Driver

High severity, CVSS 7.4. EPSS: 0.2% chance of exploitation in the next 30 days.

Hw64.sys in Marvin Test HW.exe before 5.0.5.0 allows unprivileged user-mode processes to arbitrarily read kernel memory (and consequently gain all privileges) via IOCTL 0x9c4064b8 (via MmMapIoSpace) and IOCTL 0x9c406490 (via ZwMapViewOfSection).

Affected products

  • Marvin Test Hw Driver: before 5.0.5.0 (fixed in 5.0.5.0)

Published 2024-05-26. Last modified 2026-06-17.