Lucene search

K
zdiPeter HlavatyDaniel King of KeenLabTencentZDI-16-284
HistoryMay 10, 2016 - 12:00 a.m.

(Pwn2Own) Microsoft Windows dxgkrnl Kernel Driver Buffer Overflow Privilege Escalation Vulnerability

2016-05-1000:00:00
Peter HlavatyDaniel King of KeenLabTencent
www.zerodayinitiative.com
126

0.001 Low

EPSS

Percentile

21.3%

This vulnerability allows local attackers to execute arbitrary code on vulnerable installations of Microsoft Windows. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within processing of the DirtyRegions structure. A buffer overflow vulnerability occurs when NumRects is larger than D3DKMT_MAX_PRESENT_HISTORY_RECTS. An attacker can leverage this vulnerability to escalate privileges and execute code under the context of SYSTEM.