Learn about CVE-2019-5147 affecting AMD ATIDXX64.DLL driver, version 26.20.13003.1007, allowing for a denial of service attack via a specially crafted pixel shader in VMware environments.
This CVE-2019-5147 vulnerability affects the AMD ATIDXX64.DLL driver, version 26.20.13003.1007, potentially leading to a denial of service attack when exploited through a specially crafted pixel shader.
Understanding CVE-2019-5147
This vulnerability allows for an exploitable out-of-bounds read, impacting systems running specific AMD and VMware configurations.
What is CVE-2019-5147?
CVE-2019-5147 is an out-of-bounds read vulnerability in the AMD ATIDXX64.DLL driver, version 26.20.13003.1007, which can be triggered by a specially designed pixel shader.
The Impact of CVE-2019-5147
The vulnerability can result in a denial of service attack when an attacker supplies a customized shader file, affecting systems utilizing VMware Workstation 15 with Windows 10 x64 as a guestVM.
Technical Details of CVE-2019-5147
This section provides detailed technical information about the vulnerability.
Vulnerability Description
The vulnerability in the AMD ATIDXX64.DLL driver, version 26.20.13003.1007, allows for an exploitable out-of-bounds read, enabling a denial of service attack.
Affected Systems and Versions
Exploitation Mechanism
By using a specifically designed pixel shader, an attacker can trigger the vulnerability, potentially impacting the VMware host.
Mitigation and Prevention
Protecting systems from CVE-2019-5147 requires immediate actions and long-term security practices.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates