Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f48v-f365-33xw

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A denial of service vulnerability exists in the D3DKMTEscape handler functionality of AMD ATIKMDAG.SYS (e.g. version 26.20.15029.27017). A specially crafted D3DKMTEscape API request can cause an out-of-bounds read in Windows OS kernel memory area. This vulnerability can be triggered from a non-privileged account.

A denial of service vulnerability exists in the D3DKMTEscape handler functionality of AMD ATIKMDAG.SYS (e.g. version 26.20.15029.27017). A specially crafted D3DKMTEscape API request can cause an out-of-bounds read in Windows OS kernel memory area. This vulnerability can be triggered from a non-privileged account.

EPSS

Процентиль: 14%
0.00045
Низкий

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 5.5
nvd
больше 5 лет назад

A denial of service vulnerability exists in the D3DKMTEscape handler functionality of AMD ATIKMDAG.SYS (e.g. version 26.20.15029.27017). A specially crafted D3DKMTEscape API request can cause an out-of-bounds read in Windows OS kernel memory area. This vulnerability can be triggered from a non-privileged account.

EPSS

Процентиль: 14%
0.00045
Низкий

Дефекты

CWE-125