Vulnerabilities > Nvidia > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-04-22 CVE-2023-0199 Out-of-bounds Write vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler, where an out-of-bounds write can lead to denial of service and data tampering.
local
low complexity
nvidia CWE-787
6.1
2023-04-22 CVE-2023-0200 Out-of-bounds Write vulnerability in Nvidia BMC
NVIDIA DGX-2 contains a vulnerability in OFBD where a user with high privileges and a pre-conditioned heap can cause an access beyond a buffers end, which may lead to code execution, escalation of privileges, denial of service, and information disclosure.
local
low complexity
nvidia CWE-787
6.7
2023-04-22 CVE-2023-0201 Out-of-bounds Write vulnerability in Nvidia BMC
NVIDIA DGX-2 SBIOS contains a vulnerability in Bds, where a user with high privileges can cause a write beyond the bounds of an indexable resource, which may lead to code execution, denial of service, compromised integrity, and information disclosure.
local
low complexity
nvidia CWE-787
6.7
2023-04-22 CVE-2023-0207 Incorrect Permission Assignment for Critical Resource vulnerability in Nvidia Sbios
NVIDIA DGX-2 SBIOS contains a vulnerability where an attacker may modify the ServerSetup NVRAM variable at runtime by executing privileged code.
local
low complexity
nvidia CWE-732
4.4
2023-04-22 CVE-2023-25512 Out-of-bounds Read vulnerability in Nvidia Cuda Toolkit
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in cuobjdump, where an attacker may cause an out-of-bounds memory read by running cuobjdump on a malformed input file.
local
low complexity
nvidia CWE-125
6.6
2023-04-22 CVE-2023-25513 Out-of-bounds Read vulnerability in Nvidia Cuda Toolkit
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in cuobjdump, where an attacker may cause an out-of-bounds read by tricking a user into running cuobjdump on a malformed input file.
local
low complexity
nvidia CWE-125
6.6
2023-04-22 CVE-2023-25514 Out-of-bounds Read vulnerability in Nvidia Cuda Toolkit
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in cuobjdump, where an attacker may cause an out-of-bounds read by tricking a user into running cuobjdump on a malformed input file.
local
low complexity
nvidia CWE-125
6.6
2023-04-01 CVE-2023-0197 NULL Pointer Dereference vulnerability in Nvidia Virtual GPU
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious user in a guest VM can cause a NULL-pointer dereference, which may lead to denial of service.
local
low complexity
nvidia CWE-476
6.5
2023-04-01 CVE-2023-0187 Out-of-bounds Read vulnerability in Nvidia Virtual GPU
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler, where an out-of-bounds read can lead to denial of service.
local
low complexity
nvidia CWE-125
5.5
2023-04-01 CVE-2023-0188 Out-of-bounds Read vulnerability in Nvidia Virtual GPU
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler, where an unprivileged user can cause improper restriction of operations within the bounds of a memory buffer cause an out-of-bounds read, which may lead to denial of service.
local
low complexity
nvidia CWE-125
5.5