First published: Tue Nov 08 2016(Updated: )
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) where unchecked input/output lengths in UVMLiteController Device IO Control handling may lead to denial of service or potential escalation of privileges.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nvidia GPU Driver | >=340<342.00 | |
Nvidia GPU Driver | >=375<375.63 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-7384 has been classified as a high severity vulnerability due to its potential to cause denial of service.
To fix CVE-2016-7384, update to NVIDIA Windows GPU Display Driver version 342.00 or later or version 375.63 or later.
CVE-2016-7384 affects NVIDIA Quadro, NVS, and GeForce products using the vulnerable GPU drivers before the specified versions.
CVE-2016-7384 is a kernel mode vulnerability affecting the nvlddmkm.sys driver related to unchecked input/output lengths.
CVE-2016-7384 impacts systems running the vulnerable NVIDIA GPU drivers on Microsoft Windows operating systems.