PT-2021-5488 · Nvidia · Nvidia Gpu Display Driver
Fabian Toepfer
·
Published
2021-07-22
·
Updated
2023-10-13
·
CVE-2021-1090
CVSS v3.1
7.1
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
NVIDIA GPU Display Driver for Windows and Linux (affected versions not specified)
Description
The issue is related to a buffer handling vulnerability in the kernel mode layer of the NVIDIA GPU Display Driver, specifically in the nvlddmkm.sys handler for control calls. This vulnerability may allow an attacker to cause data tampering or denial of service by reading or writing to a buffer using an index or pointer that references a memory location after the end of the buffer. The vulnerability is also associated with a lack of input size validation when copying a buffer, which can lead to a denial of service.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Nvidia Gpu Display Driver