Memory Mapping API Vulnerability in NVIDIA Windows GPU Display Driver for Quadro and GeForce Products
CVE-2016-7383
7.8HIGH
Key Information:
- Vendor
- Nvidia
- Vendor
- CVE Published:
- 8 November 2016
Summary
A vulnerability exists in NVIDIA's Windows GPU Display Driver related to a memory mapping API within the kernel-mode layer (nvlddmkm.sys). This issue can result in denial of service or could potentially allow an attacker to escalate privileges on systems using affected Quadro, NVS, and GeForce products, specifically for driver versions prior to 342.00 for the R340 line and prior to 375.63 for the R375 line, making it crucial for users to ensure their drivers are updated.
Affected Version(s)
Quadro, NVS, and GeForce (all ) Quadro, NVS, and GeForce (all versions)
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved