CVE-2016-4960

high
Published 2016-11-08 ยท Modified 2026-05-06
CVSS v3
7.3
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
7.3

Description

For the NVIDIA Quadro, NVS, and GeForce products, the NVIDIA NVStreamKMS.sys service component is improperly validating user-supplied data through its API entry points causing an elevation of privilege.

Predictions

Exploit likelihood
72%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

Application impact

VendorProductVersionsFixed
nvidia nvidiageforce_experience-
nvidia nvidiageforce_910m-
nvidia nvidiageforce_920m-
nvidia nvidiageforce_920mx-
nvidia nvidiageforce_930m-
nvidia nvidiageforce_930mx-
nvidia nvidiageforce_940m-
nvidia nvidiageforce_940mx-
nvidia nvidiageforce_945m-
nvidia nvidiageforce_gt_710-
nvidia nvidiageforce_gt_730-
nvidia nvidiageforce_gtx_1050-
nvidia nvidiageforce_gtx_1060-
nvidia nvidiageforce_gtx_1070-
nvidia nvidiageforce_gtx_1080-
nvidia nvidiageforce_gtx_950m-
nvidia nvidiageforce_gtx_960m-
nvidia nvidiageforce_gtx_965m-
nvidia nvidianvs_310-
nvidia nvidianvs_315-
nvidia nvidianvs_510-
nvidia nvidianvs_810-
nvidia nvidiaquadro_k1200-
nvidia nvidiaquadro_k420-
nvidia nvidiaquadro_k620-
nvidia nvidiaquadro_m1000m-
nvidia nvidiaquadro_m2000-
nvidia nvidiaquadro_m2000m-
nvidia nvidiaquadro_m3000m-
nvidia nvidiaquadro_m4000-
nvidia nvidiaquadro_m4000m-
nvidia nvidiaquadro_m5000-
nvidia nvidiaquadro_m5000m-
nvidia nvidiaquadro_m500m-
nvidia nvidiaquadro_m5500-
nvidia nvidiaquadro_m6000-
nvidia nvidiaquadro_m600m-
nvidia nvidiaquadro_p5000-
nvidia nvidiaquadro_p6000-
nvidia nvidiatitan_x-

References

CWEs

CWE-20

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.