PT-2018-1494 · Microsoft · Directx+1
Chennan
+1
·
Published
2018-08-14
·
Updated
2025-10-28
·
CVE-2018-8401
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows (affected versions not specified)
Description
The issue is related to errors in object handling in memory within the DirectX Graphics Kernel (DXGKRNL) of Windows operating systems. It allows an attacker to potentially elevate their privileges. The vulnerability can be exploited through out-of-bounds memory access in the BasicRender Driver, specifically affecting the D3DKMTSubmitCommand function.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
LPE
Buffer Overflow
Improper Resource Release
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Directx
Windows