CVE-2016-7390
HIGHNVIDIA GPU Driver R340 < 342.00 and R375 < 375.63 - Denial of Service or Privilege Escalation via DxgDdiEscape Handler
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-7390. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit targets a bounds-checking vulnerability in the NVIDIA GPU driver's DxgkDdiEscape handler (0x7000194), leading to out-of-bounds read/write operations via unchecked memcpy calls. The PoC demonstrates a crash (PAGE_FAULT_IN_NONPAGED_AREA) on Windows 10 x64 with driver version 372.54.
Description
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x7000194 where a value passed from a user to the driver is used without validation as the index to an internal array, leading to denial of service or potential escalation of privileges.
Exploits (1)
This exploit targets a bounds-checking vulnerability in the NVIDIA GPU driver's DxgkDdiEscape handler (0x7000194), leading to out-of-bounds read/write operations via unchecked memcpy calls. The PoC demonstrates a crash (PAGE_FAULT_IN_NONPAGED_AREA) on Windows 10 x64 with driver version 372.54.
References (4)
Scores
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H