Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-8812

Опубликовано: 08 нояб. 2016
Источник: nvd
CVSS3: 8.8
CVSS2: 7.2
EPSS Низкий

Описание

For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA GeForce Experience R340 before GFE 2.11.4.125 and R375 before GFE 3.1.0.52 contains a vulnerability in the kernel mode layer (nvstreamkms.sys) allowing a user to cause a stack buffer overflow with specially crafted executable paths, leading to a denial of service or escalation of privileges.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:nvidia:geforce_experience:*:*:*:*:*:*:*:*
Версия до - (включая)

Одно из

cpe:2.3:h:nvidia:geforce_910m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_920m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_920mx:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_930m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_930mx:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_940m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_940mx:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_945m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gt_710:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gt_730:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gtx_1050:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gtx_1060:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gtx_1070:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gtx_1080:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gtx_950m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gtx_960m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gtx_965m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:nvs_310:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:nvs_315:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:nvs_510:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:nvs_810:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_k1200:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_k420:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_k620:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m1000m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m2000:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m2000m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m3000m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m4000:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m4000m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m5000:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m5000m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m500m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m5500:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m6000:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m600m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_p5000:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_p6000:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:titan_x:-:*:*:*:*:*:*:*

EPSS

Процентиль: 59%
0.00376
Низкий

8.8 High

CVSS3

7.2 High

CVSS2

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 8.8
github
больше 3 лет назад

For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA GeForce Experience R340 before GFE 2.11.4.125 and R375 before GFE 3.1.0.52 contains a vulnerability in the kernel mode layer (nvstreamkms.sys) allowing a user to cause a stack buffer overflow with specially crafted executable paths, leading to a denial of service or escalation of privileges.

EPSS

Процентиль: 59%
0.00376
Низкий

8.8 High

CVSS3

7.2 High

CVSS2

Дефекты

CWE-119