CVE-2016-7382

high
Published 2016-11-08 ยท Modified 2026-05-06
CVSS v3
7.8
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
7.8

Description

For the NVIDIA Quadro, NVS, GeForce, and Tesla products, NVIDIA GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys for Windows or nvidia.ko for Linux) handler where a missing permissions check may allow users to gain access to arbitrary physical memory, leading to an escalation of privileges.

Predictions

Exploit likelihood
75%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

OS impact

OSVersionStatusFixed in
suse slesaffected
debian debianbookwormfixed367.57-1
debian debianbullseyefixed367.57-1
debian debianforkyfixed367.57-1
debian debiansidfixed367.57-1
debian debiantrixiefixed367.57-1

Application impact

VendorProductVersionsFixed
nvidia nvidiagpu_driver304.131
nvidia nvidiagpu_driver340.98
nvidia nvidiagpu_driver361.93.02
nvidia nvidiagpu_driver367.44
nvidia nvidiagpu_driver367.54
nvidia nvidiagpu_driver370.23
nvidia nvidiageforce_910m-
nvidia nvidiageforce_920m-
nvidia nvidiageforce_920mx-
nvidia nvidiageforce_930m-
nvidia nvidiageforce_930mx-
nvidia nvidiageforce_940m-
nvidia nvidiageforce_940mx-
nvidia nvidiageforce_945m-
nvidia nvidiageforce_gt_710-
nvidia nvidiageforce_gt_730-
nvidia nvidiageforce_gtx_1050-
nvidia nvidiageforce_gtx_1060-
nvidia nvidiageforce_gtx_1070-
nvidia nvidiageforce_gtx_1080-
nvidia nvidiageforce_gtx_950m-
nvidia nvidiageforce_gtx_960m-
nvidia nvidiageforce_gtx_965m-
nvidia nvidianvs_310-
nvidia nvidianvs_315-
nvidia nvidianvs_510-
nvidia nvidianvs_810-
nvidia nvidiaquadro_k1200-
nvidia nvidiaquadro_k420-
nvidia nvidiaquadro_k620-
nvidia nvidiaquadro_m1000m-
nvidia nvidiaquadro_m2000-
nvidia nvidiaquadro_m2000m-
nvidia nvidiaquadro_m3000m-
nvidia nvidiaquadro_m4000-
nvidia nvidiaquadro_m4000m-
nvidia nvidiaquadro_m5000-
nvidia nvidiaquadro_m5000m-
nvidia nvidiaquadro_m500m-
nvidia nvidiaquadro_m5500-
nvidia nvidiaquadro_m6000-
nvidia nvidiaquadro_m600m-
nvidia nvidiaquadro_p5000-
nvidia nvidiaquadro_p6000-
nvidia nvidiatelsa_k80-
nvidia nvidiatesla_c2050-
nvidia nvidiatesla_c2070-
nvidia nvidiatesla_c2075-
nvidia nvidiatesla_k10-
nvidia nvidiatesla_k20-
nvidia nvidiatesla_k20x-
nvidia nvidiatesla_k40-
nvidia nvidiatesla_k8-
nvidia nvidiatesla_k80-
nvidia nvidiatesla_m2050-
nvidia nvidiatesla_m2070-
nvidia nvidiatesla_m2075-
nvidia nvidiatesla_m2090-
nvidia nvidiatesla_m40-
nvidia nvidiatesla_m6-
nvidia nvidiatesla_m60-
nvidia nvidiatesla_p100-
nvidia nvidiatesla_p4-
nvidia nvidiatesla_p40-
nvidia nvidiatitan_x-

References

CWEs

CWE-275

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.