CVE-2016-7391: Buffer Overflow
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x100010b where a missing array bounds check can allow a user to write to kernel memory, leading to denial of service or potential escalation of privileges.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-7391?
CVE-2016-7391 has a high severity rating due to its potential to allow unauthorized access to kernel memory.
How do I fix CVE-2016-7391?
To fix CVE-2016-7391, update your NVIDIA GPU Display Driver to versions 342.00 or later, or to versions 375.63 or later.
Which products are affected by CVE-2016-7391?
CVE-2016-7391 affects NVIDIA Quadro, NVS, and GeForce products running vulnerable versions of the NVIDIA Windows GPU Display Driver.
Can CVE-2016-7391 be exploited remotely?
CVE-2016-7391 primarily requires local access to exploit, limiting the risk of remote exploitation.
What is the impact of CVE-2016-7391?
The impact of CVE-2016-7391 can lead to system crashes or arbitrary code execution due to unchecked memory access in the driver.