Junglewise Threat Intelligence

CVE-2018-8405: Microsoft DirectX Graphics Kernel Privilege Escalation Vulnerability

CVE-2018-8405 · Severity: critical · CVSS 7.8 · Exploited in the wild · Published 2022-03-28

Technologies: Microsoft Windows Server 2012 R2, Microsoft Windows 8.1, Microsoft Windows 10, Microsoft Windows Server 2016, Microsoft Windows Rt 8.1. Vendors: Microsoft.

Executive brief

An elevation of privilege vulnerability exists in the Microsoft DirectX Graphics Kernel (DXGKRNL) driver due to improper handling of objects in memory. A local attacker could exploit this to gain elevated system privileges.

Affected products

  • Microsoft Windows Server 2012 R2
  • Microsoft Windows RT 8.1
  • Microsoft Windows Server 2016
  • Microsoft Windows 8.1
  • Microsoft Windows 10
  • Microsoft Windows Server 1709
  • Microsoft Windows Server 1803

Timeline

  • 2018-09-11: disclosed: Initial release of Microsoft security advisory.
  • 2022-03-28: kev added: Added to CISA Known Exploited Vulnerabilities Catalog.
  • 2022-03-28: exploited: Confirmed as exploited in the wild per CISA KEV entry.

Related threats