NVIDIA Windows GPU Display Driver Vulnerability Exposing Denial of Service Risks
CVE-2017-0308
8.8HIGH
Summary
The NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys) related to the DxgkDdiEscape handler. This flaw allows untrusted input to be utilized for buffer size calculations, which can potentially lead to denial of service or enable escalation of privileges within a system. It is crucial for users to ensure their driver is updated to mitigate associated risks.
Affected Version(s)
Windows GPU Display Driver All
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved