PT-2021-5488 · Nvidia · Nvidia Gpu Display Driver

Fabian Toepfer

·

Published

2021-07-22

·

Updated

2023-10-13

·

CVE-2021-1090

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions NVIDIA GPU Display Driver for Windows and Linux (affected versions not specified)
Description The issue is related to a buffer handling vulnerability in the kernel mode layer of the NVIDIA GPU Display Driver, specifically in the nvlddmkm.sys handler for control calls. This vulnerability may allow an attacker to cause data tampering or denial of service by reading or writing to a buffer using an index or pointer that references a memory location after the end of the buffer. The vulnerability is also associated with a lack of input size validation when copying a buffer, which can lead to a denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-06337
CVE-2021-1090

Affected Products

Nvidia Gpu Display Driver