CVE-2016-5647 is a privilege escalation and denial-of-service vulnerability affecting the igdkmd64 module in specific versions of the Intel Graphics Driver on Windows. A local attacker can exploit this flaw by sending a crafted D3DKMTEscape request. With a CVSS score of 7.8 (High), successful exploitation could lead to system crashes or arbitrary code execution with elevated privileges. While there is no known public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability has received some community discussion and media coverage, indicating awareness. It is not listed in CISA's KEV catalog, suggesting it's not currently under active widespread exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 15.33, <= 15.33.42.4358CPE matchmatch criteria | cpe:2.3:a:intel:graphics_driver:*:*:*:*:*:*:*:* | ||
>= 15.36, <= 15.36.30.4385CPE matchmatch criteria | cpe:2.3:a:intel:graphics_driver:*:*:*:*:*:*:*:* | ||
>= 15.40, <= 15.40.4404CPE matchmatch criteria | cpe:2.3:a:intel:graphics_driver:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.