First published: Fri Dec 16 2016(Updated: )
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape where a value passed from a user to the driver is used without validation as the size input to memcpy(), causing a buffer overflow, leading to denial of service or potential escalation of privileges.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nvidia Gpu Driver | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8817 is considered a high severity vulnerability due to its potential to cause a buffer overflow and denial of service.
To fix CVE-2016-8817, update your NVIDIA GPU Display Driver to the latest version provided by NVIDIA.
CVE-2016-8817 affects all versions of the NVIDIA GPU Display Driver on Windows systems.
CVE-2016-8817 is a buffer overflow vulnerability in the kernel mode layer of the NVIDIA Windows GPU Display Driver.
CVE-2016-8817 primarily leads to a denial of service but does not allow remote exploitation.