CVE-2016-4959
high
CVSS v3
7.5
CVSS v4 NEW
โ
VIR risk
7.5
Description
For the NVIDIA Quadro, NVS, and GeForce products, there is a Remote Desktop denial of service. A successful exploit of a vulnerable system will result in a kernel null pointer dereference, causing a blue screen crash.
Predictions
Exploit likelihood
83%
Patch ETA
โ
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| nvidia | gpu_driver | {"startIncluding":"340","endExcluding":"341.96"} | 341.96 |
| nvidia | gpu_driver | {"startIncluding":"352.0","endExcluding":"354.99"} | 354.99 |
| nvidia | gpu_driver | {"startIncluding":"361","endExcluding":"362.77"} | 362.77 |
| nvidia | gpu_driver | {"startIncluding":"367","endExcluding":"368.39"} | 368.39 |
| nvidia | geforce_910m | - | |
| nvidia | geforce_920m | - | |
| nvidia | geforce_920mx | - | |
| nvidia | geforce_930m | - | |
| nvidia | geforce_930mx | - | |
| nvidia | geforce_940m | - | |
| nvidia | geforce_940mx | - | |
| nvidia | geforce_945m | - | |
| nvidia | geforce_gt_710 | - | |
| nvidia | geforce_gt_730 | - | |
| nvidia | geforce_gtx_1050 | - | |
| nvidia | geforce_gtx_1060 | - | |
| nvidia | geforce_gtx_1070 | - | |
| nvidia | geforce_gtx_1080 | - | |
| nvidia | geforce_gtx_950m | - | |
| nvidia | geforce_gtx_960m | - | |
| nvidia | geforce_gtx_965m | - | |
| nvidia | nvs_310 | - | |
| nvidia | nvs_315 | - | |
| nvidia | nvs_510 | - | |
| nvidia | nvs_810 | - | |
| nvidia | quadro_k1200 | - | |
| nvidia | quadro_k420 | - | |
| nvidia | quadro_k620 | - | |
| nvidia | quadro_m1000m | - | |
| nvidia | quadro_m2000 | - | |
| nvidia | quadro_m2000m | - | |
| nvidia | quadro_m3000m | - | |
| nvidia | quadro_m4000 | - | |
| nvidia | quadro_m4000m | - | |
| nvidia | quadro_m5000 | - | |
| nvidia | quadro_m5000m | - | |
| nvidia | quadro_m500m | - | |
| nvidia | quadro_m5500 | - | |
| nvidia | quadro_m6000 | - | |
| nvidia | quadro_m600m | - | |
| nvidia | quadro_p5000 | - | |
| nvidia | quadro_p6000 | - | |
| nvidia | titan_x | - | |
References
- http://nvidia.custhelp.com/app/answers/detail/a_id/4213
- http://www.securityfocus.com/bid/93256
- http://www.tripwire.com/state-of-security/vulnerability-management/warning-this-post-contains-graphic-nvidia-content/
- https://support.lenovo.com/us/en/product_security/ps500070
- http://nvidia.custhelp.com/app/answers/detail/a_id/4213
- http://www.securityfocus.com/bid/93256
- http://www.tripwire.com/state-of-security/vulnerability-management/warning-this-post-contains-graphic-nvidia-content/
- https://support.lenovo.com/us/en/product_security/ps500070
CWEs
CWE-476
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.