CVE-2017-6254: Input Validation
Published Jul 28, 2017
·Updated
NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where a pointer passed from an user to the driver is used without validation which may lead to denial of service or potential escalation of privileges.
Affected Software
2 affected components
Nvidia GPU driver
Microsoft Windows
Event History
Jul 28, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-6254?
CVE-2017-6254 has a High severity due to its potential for denial of service and privilege escalation.
2
How do I fix CVE-2017-6254?
To fix CVE-2017-6254, update your NVIDIA GPU Display Driver to the latest version provided by NVIDIA.
3
Which systems are affected by CVE-2017-6254?
CVE-2017-6254 affects NVIDIA GPU drivers on Windows operating systems.
4
What type of vulnerability is CVE-2017-6254?
CVE-2017-6254 is a kernel mode driver vulnerability that can be exploited by attackers.
5
Can CVE-2017-6254 lead to remote attacks?
CVE-2017-6254 may not directly lead to remote attacks but can allow privilege escalation for local attackers.