CVE-2017-6256 Vulnerability Details

  /     /     /  

CVE-2017-6256 Metadata Quick Info

CVE Published: 28/07/2017 | CVE Updated: 17/09/2024 | CVE Year: 2017
Source: nvidia | Vendor: Nvidia Corporation | Product: NVIDIA Windows GPU Display Driver
Status : PUBLISHED

CVE-2017-6256 Description

NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where a value passed from a user to the driver is not correctly validated and used as the index to an array which may lead to denial of service or potential escalation of privileges.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Denial of Service, Escalation of Privileges
Source: Nvidia Corporation

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).