Kernel Mode Driver Vulnerability in NVIDIA Windows GPU Display Driver
CVE-2016-8809
7.8HIGH
Key Information:
- Vendor
- Nvidia
- Vendor
- CVE Published:
- 8 November 2016
Summary
The NVIDIA Windows GPU Display Driver contains a vulnerability in its kernel mode layer (nvlddmkm.sys) related to the handling of the DxgDdiEscape ID 0x70001b2. This issue arises from the failure to properly validate the size of an input buffer, which can lead to a potential denial of service or unauthorized escalation of privileges. Users of affected NVIDIA Quadro, NVS, and GeForce products should ensure that they are running versions 342.00 or higher to mitigate this risk.
Affected Version(s)
Quadro, NVS, and GeForce (all ) Quadro, NVS, and GeForce (all versions)
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved