Vulnerabilities > Nvidia > GPU Display Driver > High

DATE CVE VULNERABILITY TITLE RISK
2022-05-17 CVE-2022-28183 Out-of-bounds Read vulnerability in Nvidia GPU Display Driver and Virtual GPU
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user can cause an out-of-bounds read, which may lead to denial of service and information disclosure.
local
low complexity
nvidia CWE-125
7.1
2022-05-17 CVE-2022-28184 Unspecified vulnerability in Nvidia GPU Display Driver and Virtual GPU
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where an unprivileged regular user can access administrator- privileged registers, which may lead to denial of service, information disclosure, and data tampering.
local
low complexity
nvidia
7.8
2021-07-22 CVE-2021-1089 Uncontrolled Search Path Element vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows contains a vulnerability in nvidia-smi where an uncontrolled DLL loading path may lead to arbitrary code execution, denial of service, information disclosure, and data tampering.
local
low complexity
nvidia CWE-427
7.8
2021-07-22 CVE-2021-1090 Classic Buffer Overflow vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for control calls where the software reads or writes to a buffer by using an index or pointer that references a memory location after the end of the buffer, which may lead to data tampering or denial of service.
local
low complexity
nvidia CWE-120
7.1
2021-07-22 CVE-2021-1091 Link Following vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display driver for Windows contains a vulnerability where an unprivileged user can create a file hard link that causes the driver to overwrite a file that requires elevated privilege to modify, which could lead to data loss or denial of service.
local
low complexity
nvidia CWE-59
7.1
2021-07-22 CVE-2021-1092 Link Following vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows contains a vulnerability in the NVIDIA Control Panel application where it is susceptible to a Windows file system symbolic link attack where an unprivileged attacker can cause the applications to overwrite privileged files, resulting in potential denial of service or data loss.
local
low complexity
nvidia CWE-59
7.1
2021-04-21 CVE-2021-1076 NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys or nvidia.ko) where improper access control may lead to denial of service, information disclosure, or data corruption.
local
low complexity
nvidia debian
7.8
2021-04-21 CVE-2021-1075 NULL Pointer Dereference vulnerability in Nvidia GPU Display Driver
NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where the program dereferences a pointer that contains a location for memory that is no longer valid, which may lead to code execution, denial of service, or escalation of privileges.
local
low complexity
nvidia CWE-476
7.3
2021-04-21 CVE-2021-1074 Unspecified vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows installer contains a vulnerability where an attacker with local unprivileged system access may be able to replace an application resource with malicious files.
local
low complexity
nvidia
7.3
2020-06-25 CVE-2020-5966 NULL Pointer Dereference vulnerability in Nvidia GPU Display Driver
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, in which a NULL pointer is dereferenced, leading to denial of service or potential escalation of privileges.
local
low complexity
nvidia CWE-476
7.8