5.5

CVE-2016-4961

For the NVIDIA Quadro, NVS, and GeForce products, improper sanitization of parameters in the NVStreamKMS.sys API layer caused a denial of service vulnerability (blue screen crash) within the NVIDIA Windows graphics drivers.

Data is provided by the National Vulnerability Database (NVD)
NvidiaGeforce Experience Version <= -
   NvidiaGeforce 910m Version-
   NvidiaGeforce 920m Version-
   NvidiaGeforce 920mx Version-
   NvidiaGeforce 930m Version-
   NvidiaGeforce 930mx Version-
   NvidiaGeforce 940m Version-
   NvidiaGeforce 940mx Version-
   NvidiaGeforce 945m Version-
   NvidiaGeforce Gt 710 Version-
   NvidiaGeforce Gt 730 Version-
   NvidiaGeforce Gtx 1050 Version-
   NvidiaGeforce Gtx 1060 Version-
   NvidiaGeforce Gtx 1070 Version-
   NvidiaGeforce Gtx 1080 Version-
   NvidiaGeforce Gtx 950m Version-
   NvidiaGeforce Gtx 960m Version-
   NvidiaGeforce Gtx 965m Version-
   NvidiaNvs 310 Version-
   NvidiaNvs 315 Version-
   NvidiaNvs 510 Version-
   NvidiaNvs 810 Version-
   NvidiaQuadro K1200 Version-
   NvidiaQuadro K420 Version-
   NvidiaQuadro K620 Version-
   NvidiaQuadro M1000m Version-
   NvidiaQuadro M2000 Version-
   NvidiaQuadro M2000m Version-
   NvidiaQuadro M3000m Version-
   NvidiaQuadro M4000 Version-
   NvidiaQuadro M4000m Version-
   NvidiaQuadro M5000 Version-
   NvidiaQuadro M5000m Version-
   NvidiaQuadro M500m Version-
   NvidiaQuadro M5500 Version-
   NvidiaQuadro M6000 Version-
   NvidiaQuadro M600m Version-
   NvidiaQuadro P5000 Version-
   NvidiaQuadro P6000 Version-
   NvidiaTitan X Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.05% 0.152
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:N/A:C
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.