cpe:/a:nvidia:gpu_driver:341.98 cpe:/a:nvidia:gpu_driver:373.06 CVE-2016-8807 2016-11-08T15:59:20.663-05:00 2017-09-02T21:29:14.843-04:00 7.2 LOCAL LOW NONE COMPLETE COMPLETE COMPLETE http://nvd.nist.gov 2016-11-29T14:17:49.437-05:00 EXPLOIT-DB 40668 BID 94002 CONFIRM http://nvidia.custhelp.com/app/answers/detail/a_id/4247 CONFIRM https://support.lenovo.com/us/en/solutions/LEN-10822 For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x10000e9 where a value is passed from an user to the driver is used without validation as the size input to memcpy() causing a stack buffer overflow, leading to denial of service or potential escalation of privileges.