vendor:
Chrome
by:
Project Zero
7,8
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Chrome
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 10 x64
2016
DxgkDdiEscape handler for 0x70000d5 lacks bounds checks
The DxgkDdiEscape handler for 0x70000d5 lacks bounds checks, which leads to overflow of the global buffer, and pool overflows when it's copied back into the escape data.
Mitigation:
Ensure that all user-supplied input is properly validated and sanitized.