CVE-2016-8811
HIGHNVIDIA Windows GPU Display Driver R340 <342.00 and R375 <375.63 - DoS
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-8811. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit targets a bounds check vulnerability in the DxgkDdiEscape handler (0x7000170) in the Windows DirectX graphics kernel (dxgkrnl.sys), leading to a stack buffer overrun and potential kernel privilege escalation. The PoC triggers a KERNEL_SECURITY_CHECK_FAILURE (0x139) crash due to stack cookie corruption.
Description
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x7000170 where the size of an input buffer is not validated, leading to denial of service or potential escalation of privileges.
Exploits (1)
This exploit targets a bounds check vulnerability in the DxgkDdiEscape handler (0x7000170) in the Windows DirectX graphics kernel (dxgkrnl.sys), leading to a stack buffer overrun and potential kernel privilege escalation. The PoC triggers a KERNEL_SECURITY_CHECK_FAILURE (0x139) crash due to stack cookie corruption.
References (4)
Scores
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H