CVE-2018-6248

NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer handler for DxgkDdiEscape where the software uses a sequential operation to read or write a buffer, but it uses an incorrect length value that causes it to access memory that is outside of the bounds of the buffer which may lead to denial of service or possible escalation of privileges.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:nvidia:gpu_driver:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:10

Type Values Removed Values Added
References () http://nvidia.custhelp.com/app/answers/detail/a_id/4649 - Vendor Advisory () http://nvidia.custhelp.com/app/answers/detail/a_id/4649 - Vendor Advisory

Information

Published : 2018-04-02 16:29

Updated : 2024-11-21 04:10


NVD link : CVE-2018-6248

Mitre link : CVE-2018-6248

CVE.ORG link : CVE-2018-6248


JSON object : View

Products Affected

nvidia

  • gpu_driver

microsoft

  • windows
CWE
CWE-125

Out-of-bounds Read