Vulnerabilities > Nvidia

DATE CVE VULNERABILITY TITLE RISK
2023-06-23 CVE-2023-25518 Unspecified vulnerability in Nvidia Jetson Linux
NVIDIA Jetson contains a vulnerability in CBoot, where the PCIe controller is initialized without IOMMU, which may allow an attacker with physical access to the target device to read and write to arbitrary memory.
low complexity
nvidia
6.8
2023-06-23 CVE-2023-25520 Improper Input Validation vulnerability in Nvidia Jetson Linux
NVIDIA Jetson Linux Driver Package contains a vulnerability in nvbootctrl, where a privileged local attacker can configure invalid settings, resulting in denial of service.
local
low complexity
nvidia CWE-20
5.5
2023-04-22 CVE-2023-0184 Unspecified vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler which may lead to denial of service, escalation of privileges, information disclosure, and data tampering.
local
low complexity
nvidia
7.8
2023-04-22 CVE-2023-0190 NULL Pointer Dereference vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where a NULL pointer dereference may lead to denial of service.
local
low complexity
nvidia CWE-476
5.5
2023-04-22 CVE-2023-0199 Out-of-bounds Write vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler, where an out-of-bounds write can lead to denial of service and data tampering.
local
low complexity
nvidia CWE-787
6.1
2023-04-22 CVE-2023-0200 Out-of-bounds Write vulnerability in Nvidia BMC
NVIDIA DGX-2 contains a vulnerability in OFBD where a user with high privileges and a pre-conditioned heap can cause an access beyond a buffers end, which may lead to code execution, escalation of privileges, denial of service, and information disclosure.
local
low complexity
nvidia CWE-787
6.7
2023-04-22 CVE-2023-0201 Out-of-bounds Write vulnerability in Nvidia BMC
NVIDIA DGX-2 SBIOS contains a vulnerability in Bds, where a user with high privileges can cause a write beyond the bounds of an indexable resource, which may lead to code execution, denial of service, compromised integrity, and information disclosure.
local
low complexity
nvidia CWE-787
6.7
2023-04-22 CVE-2023-0202 Unspecified vulnerability in Nvidia DGX A100 Firmware 1.8
NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may modify arbitrary memory of SMRAM by exploiting the GenericSio and LegacySmmSredir SMM APIs.
local
low complexity
nvidia
7.8
2023-04-22 CVE-2023-0203 Unspecified vulnerability in Nvidia Connectx Firmware
NVIDIA ConnectX-5, ConnectX-6, and ConnectX6-DX contain a vulnerability in the NIC firmware, where an unprivileged user can exploit insufficient granularity of access control, which may lead to denial of service.
network
low complexity
nvidia
7.7
2023-04-22 CVE-2023-0204 Improper Handling of Exceptional Conditions vulnerability in Nvidia Connectx Firmware
NVIDIA ConnectX-5, ConnectX-6, and ConnectX6-DX contain a vulnerability in the NIC firmware, where an unprivileged user can cause improper handling of exceptional conditions, which may lead to denial of service.
network
low complexity
nvidia CWE-755
7.7