First published: Thu Sep 21 2017(Updated: )
NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where a value passed from a user to the driver is not correctly validated and used as the index to an array which may lead to denial of service or possible escalation of privileges.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
NVIDIA GPU kernel driver | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-6277 has been classified as a moderate severity vulnerability.
CVE-2017-6277 affects systems running the NVIDIA Windows GPU Display Driver.
Yes, CVE-2017-6277 can result in denial of service due to improper validation of user input.
To fix CVE-2017-6277, update the NVIDIA GPU Display Driver to the latest version provided by NVIDIA.
Yes, user interaction is necessary as the vulnerability involves input from users to the driver.