CVE-2016-7385
HIGHNVIDIA GPU Driver R340 < 342.00 & R375 < 375.63 - DoS or Privilege Escalation via Unvalidated Array Index
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-7385. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit targets a vulnerability in the NVIDIA GPU driver (CVE-2016-7385) where the DxgkDdiEscape handler for 0x700010d allows arbitrary memory writes via a user-controlled pointer in a memcpy operation. The PoC demonstrates a SYSTEM_SERVICE_EXCEPTION crash by writing to an invalid memory address (0x4141414141414141).
Description
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x700010d where a value passed from a user to the driver is used without validation as the index to an internal array, leading to denial of service or potential escalation of privileges.
Exploits (1)
This exploit targets a vulnerability in the NVIDIA GPU driver (CVE-2016-7385) where the DxgkDdiEscape handler for 0x700010d allows arbitrary memory writes via a user-controlled pointer in a memcpy operation. The PoC demonstrates a SYSTEM_SERVICE_EXCEPTION crash by writing to an invalid memory address (0x4141414141414141).
References (4)
Scores
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H