PT-2016-7591 · Nvidia · Nvidia Windows Gpu Display Driver

Oliver Chang

·

Published

2016-12-16

·

Updated

2016-12-27

·

CVE-2016-8822

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions NVIDIA Windows GPU Display Driver (affected versions not specified)
Description The issue is related to a vulnerability in the kernel mode layer handler for specific DxgDdiEscape IDs. A value passed from a user to the driver is used without validation as the index to an internal array, which can lead to denial of service or potential escalation of privileges. The affected IDs are 0x600000E, 0x600000F, and 0x6000010.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-8822

Affected Products

Nvidia Windows Gpu Display Driver