First published: Fri Dec 16 2016(Updated: )
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape where a check on a function return value is missing, potentially allowing an uninitialized value to be used as the source of a strcpy() call, leading to denial of service or information disclosure.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nvidia Gpu Driver | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8820 has a maximum severity rating due to its potential to allow uninitialized value exploitation leading to a denial of service.
To fix CVE-2016-8820, update to the latest version of the NVIDIA Windows GPU Display Driver.
CVE-2016-8820 affects all versions of the NVIDIA Windows GPU Display Driver.
CVE-2016-8820 is a kernel mode vulnerability affecting the handler in nvlddmkm.sys.
Yes, CVE-2016-8820 can result in system crashes due to a denial of service condition.