Vulnerabilities > Nvidia

DATE CVE VULNERABILITY TITLE RISK
2011-12-27 CVE-2011-4784 Improper Input Validation vulnerability in Nvidia Stereoscopic 3D Driver
The NVIDIA Stereoscopic 3D driver before 7.17.12.7565 does not properly handle commands sent to a named pipe, which allows local users to gain privileges via a crafted application.
local
low complexity
nvidia CWE-20
7.2
2011-06-30 CVE-2011-2603 Resource Management Errors vulnerability in Nvidia 9400M Driver 6.2.6
The NVIDIA 9400M driver 6.2.6 on Mac OS X 10.6.7 allows remote attackers to cause a denial of service (desktop hang) via a crafted web page that is visited with Google Chrome or Mozilla Firefox, as demonstrated by the lots-of-polys-example.html test page in the Khronos WebGL SDK.
network
nvidia apple CWE-399
7.1
2011-06-30 CVE-2011-2602 Resource Management Errors vulnerability in Nvidia Geforce 310 Driver 6.14.12.7061
The NVIDIA Geforce 310 driver 6.14.12.7061 on Windows XP SP3 allows remote attackers to cause a denial of service (system crash) via a crafted web page that is visited with Google Chrome or Mozilla Firefox, as demonstrated by the lots-of-polys-example.html test page in the Khronos WebGL SDK.
7.1
2011-01-22 CVE-2011-0636 Information Exposure vulnerability in Nvidia Cuda Toolkit 3.2
The (1) cudaHostAlloc and (2) cuMemHostAlloc functions in the NVIDIA CUDA Toolkit 3.2 developer drivers for Linux 260.19.26, and possibly other versions, do not initialize pinned memory, which allows local users to read potentially sensitive memory, such as file fragments during read or write operations.
local
low complexity
nvidia CWE-200
2.1
2007-07-27 CVE-2007-3532 Permissions, Privileges, and Access Controls vulnerability in Nvidia Video Driver
NVIDIA drivers (nvidia-drivers) before 1.0.7185, 1.0.9639, and 100.14.11, as used in Gentoo Linux and possibly other distributions, creates /dev/nvidia* device files with insecure permissions, which allows local users to modify video card settings, cause a denial of service (crash or physical video card damage), and obtain sensitive information.
local
low complexity
gentoo nvidia CWE-264
7.2
2006-12-07 CVE-2006-6340 Local Denial of Service vulnerability in Nvidia NView Keystone.EXE
keystone.exe in nVIDIA nView allows attackers to cause a denial of service via a long command line argument.
network
low complexity
nvidia
5.0
2006-10-18 CVE-2006-5379 Buffer Overflow vulnerability in Nvidia Binary Graphics Driver V8762/V8774
The accelerated rendering functionality of NVIDIA Binary Graphics Driver (binary blob driver) For Linux v8774 and v8762, and probably on other operating systems, allows local and remote attackers to execute arbitrary code via a large width value in a font glyph, which can be used to overwrite arbitrary memory locations.
network
low complexity
nvidia
7.5