NVIDIA Windows GPU Display Driver Vulnerability Exposing Denial of Service Risks
CVE-2017-0308

8.8HIGH

Key Information:

Vendor
Nvidia
Vendor
CVE Published:
15 February 2017

Summary

The NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys) related to the DxgkDdiEscape handler. This flaw allows untrusted input to be utilized for buffer size calculations, which can potentially lead to denial of service or enable escalation of privileges within a system. It is crucial for users to ensure their driver is updated to mitigate associated risks.

Affected Version(s)

Windows GPU Display Driver All

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.