Buffer Validation Flaw in NVIDIA Windows GPU Display Driver
CVE-2017-0324
7.8HIGH
Summary
A flaw exists in the NVIDIA Windows GPU Display Driver, specifically within the kernel mode layer (nvlddmkm.sys) that handles DxgkDdiEscape requests. The vulnerability arises from improper validation of the input buffer size, which could potentially allow attackers to cause a denial of service or exploit the system to escalate privileges. Users should ensure their drivers are updated to mitigate any potential risks associated with this vulnerability.
Affected Version(s)
Windows GPU Display Driver All
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved