Executive brief
An elevation of privilege vulnerability exists in the Microsoft DirectX Graphics Kernel (DXGKRNL) driver due to improper handling of objects in memory. A local attacker could exploit this to gain elevated system privileges.
Affected products
- Microsoft Windows Server 2012 R2
- Microsoft Windows RT 8.1
- Microsoft Windows Server 2016
- Microsoft Windows 8.1
- Microsoft Windows 10
- Microsoft Windows Server 1709
- Microsoft Windows Server 1803
Timeline
- 2018-09-11: disclosed: Initial release of Microsoft security advisory.
- 2022-03-28: kev added: Added to CISA Known Exploited Vulnerabilities Catalog.
- 2022-03-28: exploited: Confirmed as exploited in the wild per CISA KEV entry.