CVE-2016-7391
HIGHNVIDIA GPU Driver R340 < 342.00 and R375 < 375.63 - Denial of Service or Privilege Escalation via DxgDdiEscape Handler
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-7391. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit targets an out-of-bounds (OOB) write vulnerability in the NVIDIA GPU driver (CVE-2016-7391). The flaw arises from an unchecked user-provided index in the DxgkDdiEscape handler, allowing arbitrary memory writes via ObReferenceObjectByHandle. The PoC triggers a PAGE_FAULT_IN_NONPAGED_AREA crash, demonstrating the vulnerability.
Description
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x100010b where a missing array bounds check can allow a user to write to kernel memory, leading to denial of service or potential escalation of privileges.
Exploits (1)
This exploit targets an out-of-bounds (OOB) write vulnerability in the NVIDIA GPU driver (CVE-2016-7391). The flaw arises from an unchecked user-provided index in the DxgkDdiEscape handler, allowing arbitrary memory writes via ObReferenceObjectByHandle. The PoC triggers a PAGE_FAULT_IN_NONPAGED_AREA crash, demonstrating the vulnerability.
References (4)
Scores
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H