Kernel Mode Vulnerability in NVIDIA Windows GPU Display Driver
CVE-2017-0314
7.8HIGH
Summary
The NVIDIA Windows GPU Display Driver has a vulnerability in the kernel mode layer (nvlddmkm.sys) related to the SubmitCommandVirtual DDI (DxgkDdiSubmitCommandVirtual). This flaw allows untrusted input to be used for referencing memory beyond the designed buffer boundaries, potentially leading to a denial of service or enabling escalation of privileges. Users and administrators are advised to update their drivers to safeguard against this security concern.
Affected Version(s)
Windows GPU Display Driver All
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved