
CVE-2016-8806 – NVIDIA Driver - Unchecked User-Provided Pointer in Escape 0x5000027
https://notcve.org/view.php?id=CVE-2016-8806
29 Oct 2016 — For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x5000027 where a pointer passed from an user to the driver is used without validation, leading to denial of service or potential escalation of privileges. Para los productos NVIDIA Quadro, NVS y GeForce, NVIDIA Windows GPU Display Driver R340 en versiones anteriores a 342.00 y R375 en versio... • https://packetstorm.news/files/id/139394 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-8807 – NVIDIA Driver - Stack Buffer Overflow in Escape 0x10000e9
https://notcve.org/view.php?id=CVE-2016-8807
29 Oct 2016 — For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x10000e9 where a value is passed from an user to the driver is used without validation as the size input to memcpy() causing a stack buffer overflow, leading to denial of service or potential escalation of privileges. Para los productos NVIDIA Quadro, NVS y GeForce, NVIDIA Windows GPU Displa... • https://packetstorm.news/files/id/139399 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-8808 – NVIDIA Driver - Missing Bounds Check in Escape 0x70000d5
https://notcve.org/view.php?id=CVE-2016-8808
29 Oct 2016 — For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x70000d5 where a value passed from an user to the driver is used without validation as the index to an internal array, leading to denial of service or potential escalation of privileges. Para los productos NVIDIA Quadro, NVS y GeForce, NVIDIA Windows GPU Display Driver R340 en versiones ante... • https://packetstorm.news/files/id/139397 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-8809 – NVIDIA Driver - Incorrect Bounds Check in Escape 0x70001b2
https://notcve.org/view.php?id=CVE-2016-8809
29 Oct 2016 — For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x70001b2 where the size of an input buffer is not validated, leading to denial of service or potential escalation of privileges. Para los productos NVIDIA Quadro, NVS y GeForce, NVIDIA Windows GPU Display Driver R340 en versiones anteriores a 342.00 y R375 en versiones anteriores a 375.63 co... • https://packetstorm.news/files/id/139395 • CWE-20: Improper Input Validation CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-8810 – NVIDIA Driver - Missing Bounds Check in Escape 0x100009a
https://notcve.org/view.php?id=CVE-2016-8810
29 Oct 2016 — For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x100009a where a value passed from an user to the driver is used without validation as the index to an internal array, leading to denial of service or potential escalation of privileges. Para los productos NVIDIA Quadro, NVS y GeForce, NVIDIA Windows GPU Display Driver R340 en versiones ante... • https://packetstorm.news/files/id/139396 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-8811 – NVIDIA Driver - No Bounds Checking in Escape 0x7000170
https://notcve.org/view.php?id=CVE-2016-8811
29 Oct 2016 — For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x7000170 where the size of an input buffer is not validated, leading to denial of service or potential escalation of privileges. Para los productos NVIDIA Quadro, NVS y GeForce, NVIDIA Windows GPU Display Driver R340 en versiones anteriores a 342.00 y R375 en versiones anteriores a 375.63 co... • https://packetstorm.news/files/id/139393 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-7386 – NVIDIA Driver - Escape Code Leaks Uninitialised ExAllocatePoolWithTag Memory to Userspace
https://notcve.org/view.php?id=CVE-2016-7386
29 Oct 2016 — For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x70000D4 which may lead to leaking of kernel memory contents to user space through an uninitialized buffer. Para los productos NVIDIA Quadro, NVS y GeForce, NVIDIA Windows GPU Display Driver R340 en versiones anteriores a 342.00 y R375 en versiones anteriores a 375.63 contiene una vulnerabil... • https://packetstorm.news/files/id/139386 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2016-2556
https://notcve.org/view.php?id=CVE-2016-2556
12 Apr 2016 — The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows improperly allows access to restricted functionality, which allows local users to gain privileges via unspecified vectors. La interfaz Escape en la capa Kernel Mode Driver en el controlador gráfico NVIDIA GPU R340 en versiones anteriores a 341.95 y R352 en versiones anteriores a 354.74 en Windows permite el acceso a funcionalidades restringidas de manera incorrecta, lo ... • http://nvidia.custhelp.com/app/answers/detail/a_id/4059 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-2557
https://notcve.org/view.php?id=CVE-2016-2557
12 Apr 2016 — The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows allows local users to obtain sensitive information from kernel memory, cause a denial of service (crash), or possibly gain privileges via unspecified vectors, which trigger uninitialized or out-of-bounds memory access. La interfaz Escape en la capa Kernel Mode Driver en el controlador gráfico NVIDIA GPU R340 en versiones anteriores a 341.95 y R352 en versiones anteriore... • http://nvidia.custhelp.com/app/answers/detail/a_id/4060 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2016-2558
https://notcve.org/view.php?id=CVE-2016-2558
12 Apr 2016 — The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows allows local users to obtain sensitive information, cause a denial of service (crash), or gain privileges via unspecified vectors related to an untrusted pointer, which trigger uninitialized or out-of-bounds memory access. La interfaz Escape en la capa Kernel Mode Driver en el controlador gráfico NVIDIA GPU R340 en versiones anteriores a 341.95 y R352 en versiones anter... • http://nvidia.custhelp.com/app/answers/detail/a_id/4061 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •