8.8

CVE-2016-8812

For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA GeForce Experience R340 before GFE 2.11.4.125 and R375 before GFE 3.1.0.52 contains a vulnerability in the kernel mode layer (nvstreamkms.sys) allowing a user to cause a stack buffer overflow with specially crafted executable paths, leading to a denial of service or escalation of privileges.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NvidiaGeforce Experience Version <= -
   NvidiaGeforce 910m Version-
   NvidiaGeforce 920m Version-
   NvidiaGeforce 920mx Version-
   NvidiaGeforce 930m Version-
   NvidiaGeforce 930mx Version-
   NvidiaGeforce 940m Version-
   NvidiaGeforce 940mx Version-
   NvidiaGeforce 945m Version-
   NvidiaGeforce Gt 710 Version-
   NvidiaGeforce Gt 730 Version-
   NvidiaGeforce Gtx 1050 Version-
   NvidiaGeforce Gtx 1060 Version-
   NvidiaGeforce Gtx 1070 Version-
   NvidiaGeforce Gtx 1080 Version-
   NvidiaGeforce Gtx 950m Version-
   NvidiaGeforce Gtx 960m Version-
   NvidiaGeforce Gtx 965m Version-
   NvidiaNvs 310 Version-
   NvidiaNvs 315 Version-
   NvidiaNvs 510 Version-
   NvidiaNvs 810 Version-
   NvidiaQuadro K1200 Version-
   NvidiaQuadro K420 Version-
   NvidiaQuadro K620 Version-
   NvidiaQuadro M1000m Version-
   NvidiaQuadro M2000 Version-
   NvidiaQuadro M2000m Version-
   NvidiaQuadro M3000m Version-
   NvidiaQuadro M4000 Version-
   NvidiaQuadro M4000m Version-
   NvidiaQuadro M5000 Version-
   NvidiaQuadro M5000m Version-
   NvidiaQuadro M500m Version-
   NvidiaQuadro M5500 Version-
   NvidiaQuadro M6000 Version-
   NvidiaQuadro M600m Version-
   NvidiaQuadro P5000 Version-
   NvidiaQuadro P6000 Version-
   NvidiaTitan X Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.38% 0.562
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.8 2 6
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.