PatchSiren cyber security CVE debrief
CVE-2017-0314 Microsoft CVE debrief
CVE-2017-0314 is a high-severity vulnerability in the NVIDIA Windows GPU Display Driver kernel-mode layer. According to NVD and the referenced NVIDIA advisory, untrusted input in DxgkDdiSubmitCommandVirtual can reference memory outside the intended buffer boundary, creating a path to denial of service or privilege escalation.
- Vendor
- Microsoft
- Product
- Unknown
- CVSS
- HIGH 7.8
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2017-02-15
- Original CVE updated
- 2026-05-13
- Advisory published
- 2017-02-15
- Advisory updated
- 2026-05-13
Who should care
Windows endpoint teams, workstation and VDI administrators, and security teams managing systems that use NVIDIA GPU drivers should care most. The issue is especially relevant where low-privileged local users or code execution are possible on affected hosts.
Technical summary
NVD describes the flaw as occurring in nvlddmkm.sys, specifically in the SubmitCommandVirtual DDI (DxgkDdiSubmitCommandVirtual). The weakness is classified as CWE-119, and the CVSS vector (AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H) indicates a local attack requiring low privileges but with potentially severe confidentiality, integrity, and availability impact.
Defensive priority
High. The vulnerability is local in attack vector, but the combination of low privilege requirements and high impact makes it important to prioritize on any system running affected NVIDIA Windows GPU Display Driver versions.
Recommended defensive actions
- Identify Windows systems that use NVIDIA GPU Display Driver packages and prioritize them for review.
- Check the NVIDIA advisory referenced by NVD (a_id/4398) for vendor guidance and any remediated driver releases.
- Apply vendor-provided driver updates or mitigations as soon as an approved fixed package is available.
- Use least-privilege access on endpoints and restrict unnecessary local user access on high-value systems.
- Validate that driver update processes cover workstations, VDI hosts, and other GPU-enabled Windows fleets.
Evidence notes
The supplied NVD record says all versions of NVIDIA Windows GPU Display Driver are affected and ties the flaw to nvlddmkm.sys in DxgkDdiSubmitCommandVirtual. The NVD metadata includes CVSS 3.0 AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H and CWE-119. NVD also lists the NVIDIA vendor advisory as a reference. The CVE was published on 2017-02-15; later modified metadata dates should not be treated as the issue date.
Sources and references
Verified primary and authoritative sources
-
CVE-2017-0314 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2017-0314
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2017-0314 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2017-0314
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.