PT-2017-10535 · Nvidia · Nvidia Windows Gpu Display Driver

Published

2017-05-09

·

Updated

2017-05-17

·

CVE-2017-0345

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions NVIDIA Windows GPU Display Driver (affected versions not specified)
Description The issue is related to a vulnerability in the kernel mode layer handler for DxgDdiEscape, where user-provided input used as an array size is not correctly validated, allowing out of bound access in kernel memory. This may lead to denial of service or potential escalation of privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Validation of Array Index

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-0345

Affected Products

Nvidia Windows Gpu Display Driver