NVIDIA Windows GPU Display Driver Vulnerability in Kernel Mode Layer
CVE-2019-5668
7.8HIGH
Summary
The NVIDIA Windows GPU Display Driver features a vulnerability within the kernel mode layer specifically tied to the handling of the DxgkDdiSubmitCommandVirtual function. This issue arises when the driver attempts to dereference a pointer that it anticipates to be valid, but encounters a NULL pointer instead. This flaw can result in potential denial of service, leading to system instability, or in some scenarios, it could enable unauthorized escalation of privileges within the system, allowing attackers to execute privileged operations.
Affected Version(s)
NVIDIA GPU Graphics Driver All
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved