MEDIUM · 5.5

CVE-2016-4961

For the NVIDIA Quadro, NVS, and GeForce products, improper sanitization of parameters in the NVStreamKMS.sys API layer caused a denial of service vulnerability (blue screen crash) within the NVIDIA Wi...

Vulnerability Description

For the NVIDIA Quadro, NVS, and GeForce products, improper sanitization of parameters in the NVStreamKMS.sys API layer caused a denial of service vulnerability (blue screen crash) within the NVIDIA Windows graphics drivers.

CVSS Score

5.5

MEDIUM

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
NvidiaGeforce Experience<= -
NvidiaGeforce 910M-
NvidiaGeforce 920M-
NvidiaGeforce 920Mx-
NvidiaGeforce 930M-
NvidiaGeforce 930Mx-
NvidiaGeforce 940M-
NvidiaGeforce 940Mx-
NvidiaGeforce 945M-
NvidiaGeforce Gt 710-
NvidiaGeforce Gt 730-
NvidiaGeforce Gtx 1050-
NvidiaGeforce Gtx 1060-
NvidiaGeforce Gtx 1070-
NvidiaGeforce Gtx 1080-
NvidiaGeforce Gtx 950M-
NvidiaGeforce Gtx 960M-
NvidiaGeforce Gtx 965M-
NvidiaNvs 310-
NvidiaNvs 315-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2016-4961?

CVE-2016-4961 is a vulnerability with a CVSS score of 5.5 (MEDIUM). For the NVIDIA Quadro, NVS, and GeForce products, improper sanitization of parameters in the NVStreamKMS.sys API layer caused a denial of service vulnerability (blue screen crash) within the NVIDIA Wi...

How severe is CVE-2016-4961?

CVE-2016-4961 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2016-4961?

Check the references section above for vendor advisories and patch information. Affected products include: Nvidia Geforce Experience, Nvidia Geforce 910M, Nvidia Geforce 920M, Nvidia Geforce 920Mx, Nvidia Geforce 930M.