Vulnerabilities > Nvidia > High

DATE CVE VULNERABILITY TITLE RISK
2017-05-09 CVE-2017-0343 Race Condition vulnerability in Nvidia GPU Driver
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) where user can trigger a race condition due to lack of synchronization in two functions leading to a denial of service or potential escalation of privileges.
local
high complexity
nvidia CWE-362
7.0
2017-05-09 CVE-2017-0342 Incorrect Calculation vulnerability in Nvidia GPU Driver
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler where incorrect calculation may cause an invalid address access leading to denial of service or potential escalation of privileges.
local
low complexity
nvidia CWE-682
7.8
2017-05-09 CVE-2017-0341 NULL Pointer Dereference vulnerability in Nvidia GPU Driver
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape where user provided input can trigger an access to a pointer that has not been initialized which may lead to denial of service or potential escalation of privileges.
local
low complexity
nvidia CWE-476
7.8
2017-04-28 CVE-2017-6250 Unspecified vulnerability in Nvidia Geforce Experience
NVIDIA GeForce Experience contains a vulnerability in NVIDIA Web Helper.exe, where untrusted script execution may lead to violation of application execution policy and local code execution.
local
low complexity
nvidia
8.8
2017-04-24 CVE-2016-6915 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nvidia products
Stack-based buffer overflow in nvhost_job.c in the NVIDIA video driver for Android, Shield TV before OTA 3.3, Shield Table before OTA 4.4, and Shield Table TK1 before OTA 1.5.
local
low complexity
nvidia CWE-119
7.8
2017-04-24 CVE-2016-6917 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nvidia products
Buffer overflow in nvhost_job.c in the NVIDIA video driver for Android, Shield TV before OTA 3.3, Shield Table before OTA 4.4, and Shield Table TK1 before OTA 1.5.
local
low complexity
nvidia CWE-119
7.8
2017-04-24 CVE-2016-6916 Integer Overflow or Wraparound vulnerability in Nvidia products
Integer overflow in nvhost_job.c in the NVIDIA video driver for Android, Shield TV before OTA 3.3, Shield Table before OTA 4.4, and Shield Table TK1 before OTA 1.5 allows local users to cause a denial of service (system crash) via unspecified vectors, which triggers a buffer overflow.
local
low complexity
nvidia CWE-190
7.8
2017-02-27 CVE-2017-5927 Information Exposure vulnerability in multiple products
Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern ARM processors.
network
low complexity
intel amd samsung nvidia allwinner CWE-200
7.5
2017-02-27 CVE-2017-5926 Information Exposure vulnerability in multiple products
Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern AMD processors.
network
low complexity
intel amd samsung nvidia allwinner CWE-200
7.5
2017-02-27 CVE-2017-5925 Information Exposure vulnerability in multiple products
Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern Intel processors.
network
low complexity
intel amd samsung nvidia allwinner CWE-200
7.5