Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.811029
Category:Windows : Microsoft Bulletins
Title:Microsoft Windows 'Dxgkrnl.sys' Elevation of Privilege Vulnerability (KB4019149)
Summary:This host is missing an important security; update according to Microsoft KB4019149.
Description:Summary:
This host is missing an important security
update according to Microsoft KB4019149.

Vulnerability Insight:
The flaw exists due to error in the way
Microsoft DirectX graphics kernel subsystem (dxgkrnl.sys) handles certain calls
and escapes to preclude improper memory mapping and prevent unintended elevation
from user-mode.

Vulnerability Impact:
Successful exploitation will allow an attacker
to take control over the affected system and run processes in an elevated context.

Affected Software/OS:
Microsoft Windows Server 2008 x32/x64 Edition Service Pack 2 and prior.

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
7.2

CVSS Vector:
AV:L/AC:L/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-0077
BugTraq ID: 98114
http://www.securityfocus.com/bid/98114
http://www.securitytracker.com/id/1038454
CopyrightCopyright (C) 2017 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.