7.8
CWE
476
Advisory Published
Updated

CVE-2016-4959: Null Pointer Dereference

First published: Tue Nov 08 2016(Updated: )

For the NVIDIA Quadro, NVS, and GeForce products, there is a Remote Desktop denial of service. A successful exploit of a vulnerable system will result in a kernel null pointer dereference, causing a blue screen crash.

Credit: psirt@nvidia.com

Affected SoftwareAffected VersionHow to fix
Nvidia GPU Driver>=340<341.96
Nvidia GPU Driver>=352.0<354.99
Nvidia GPU Driver>=361<362.77
Nvidia GPU Driver>=367<368.39
NVIDIA GeForce 910M
NVIDIA GeForce 920M
NVIDIA GeForce 920mx
NVIDIA GeForce 930M
NVIDIA GeForce 930MX
NVIDIA GeForce 940M
NVIDIA GeForce 940MX
NVIDIA GeForce 945M
NVIDIA GeForce GT 710
NVIDIA GeForce GT 730
NVIDIA GeForce GTX 1050
NVIDIA GeForce GTX 1060
NVIDIA GeForce GTX 1070
NVIDIA GeForce GTX 1080
Nvidia GeForce GTX 950M
Nvidia GeForce GTX 960M Firmware
NVIDIA GeForce GTX 965M
NVIDIA NVS 310
NVIDIA NVS 315
NVIDIA
NVIDIA
Nvidia Quadro K1200
NVIDIA Quadro K420
Nvidia Quadro K620
Nvidia Quadro M1000M
NVIDIA Quadro M2000
NVIDIA Quadro M2000M
NVIDIA Quadro M3000M
NVIDIA Quadro M4000
NVIDIA Quadro M4000M
NVIDIA Quadro M5000
NVIDIA Quadro M5000M
NVIDIA Quadro M500M
NVIDIA Quadro M5500
NVIDIA Quadro M6000
NVIDIA Quadro M600M
NVIDIA Quadro P5000
NVIDIA Quadro P6000
NVIDIA Titan X

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2016-4959?

    CVE-2016-4959 is classified as a high severity vulnerability due to its potential to cause a denial of service through a kernel null pointer dereference.

  • How do I fix CVE-2016-4959?

    To mitigate CVE-2016-4959, update your NVIDIA GPU driver to a version that is higher than 368.39 or follow any specific patches provided by NVIDIA.

  • What are the potential impacts of CVE-2016-4959?

    Successful exploitation of CVE-2016-4959 can lead to a system crash or blue screen, resulting in disruption of service.

  • Which NVIDIA products are affected by CVE-2016-4959?

    CVE-2016-4959 affects various NVIDIA Quadro, NVS, and GeForce products with specific driver versions within the specified range.

  • Is there a workaround for CVE-2016-4959?

    Currently, disabling Remote Desktop functionality can serve as a temporary workaround for CVE-2016-4959 until a driver update is applied.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203