Memory Mapping API Vulnerability in NVIDIA Windows GPU Display Driver for Quadro and GeForce Products
CVE-2016-7383

7.8HIGH

Key Information:

Vendor
Nvidia
Vendor
CVE Published:
8 November 2016

Summary

A vulnerability exists in NVIDIA's Windows GPU Display Driver related to a memory mapping API within the kernel-mode layer (nvlddmkm.sys). This issue can result in denial of service or could potentially allow an attacker to escalate privileges on systems using affected Quadro, NVS, and GeForce products, specifically for driver versions prior to 342.00 for the R340 line and prior to 375.63 for the R375 line, making it crucial for users to ensure their drivers are updated.

Affected Version(s)

Quadro, NVS, and GeForce (all ) Quadro, NVS, and GeForce (all versions)

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.