CVE-2016-8807 is a stack buffer overflow vulnerability in the NVIDIA Windows GPU Display Driver (nvlddmkm.sys) affecting Quadro, NVS, and GeForce products. An attacker can exploit this by passing an unvalidated size input to memcpy() via DxgDdiEscape ID 0x10000e9, leading to a denial of service or potential privilege escalation. With a CVSS v3 score of 7.8 (High), this local vulnerability is easily exploitable with low privileges and no user interaction. While not actively exploited in the wild, public exploit code exists on ExploitDB, though community discussion and media coverage are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 340, < 342.00CPE matchmatch criteria | cpe:2.3:a:nvidia:gpu_driver:*:*:*:*:*:*:*:* | ||
>= 375, < 375.63CPE matchmatch criteria | cpe:2.3:a:nvidia:gpu_driver:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.