NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer handler for DxgkDdiEscape in which the software uses a sequential operation to read from or write to a buffer, but it uses an incorrect length value that causes it to access memory that is outside of the bounds of the buffer which may lead to denial of service, escalation of privileges, code execution or information disclosure.
References
Link | Resource |
---|---|
http://support.lenovo.com/us/en/solutions/LEN-26250 | |
https://nvidia.custhelp.com/app/answers/detail/a_id/4772 | Patch Vendor Advisory |
http://support.lenovo.com/us/en/solutions/LEN-26250 | |
https://nvidia.custhelp.com/app/answers/detail/a_id/4772 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 04:45
Type | Values Removed | Values Added |
---|---|---|
References | () http://support.lenovo.com/us/en/solutions/LEN-26250 - | |
References | () https://nvidia.custhelp.com/app/answers/detail/a_id/4772 - Patch, Vendor Advisory |
Information
Published : 2019-02-27 23:29
Updated : 2024-11-21 04:45
NVD link : CVE-2019-5670
Mitre link : CVE-2019-5670
CVE.ORG link : CVE-2019-5670
JSON object : View
Products Affected
nvidia
- gpu_driver
microsoft
- windows
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer