7.1
CVE-2013-0131
- EPSS 5.22%
- Published 08.04.2013 16:55:02
- Last modified 11.04.2025 00:51:21
- Source cret@cert.org
- Teams watchlist Login
- Open Login
Buffer overflow in the NVIDIA GPU driver before 304.88, 310.x before 310.44, and 313.x before 313.30 for the X Window System on UNIX, when NoScanout mode is enabled, allows remote authenticated users to execute arbitrary code via a large ARGB cursor.
Data is provided by the National Vulnerability Database (NVD)
Nvidia ≫ Gpu Driver Update- SwEditionesx Version <= 304.00
Nvidia ≫ Gpu Driver Update- SwEditionfreebsd Version <= 304.00
Nvidia ≫ Gpu Driver Update- SwEditionlinux_kernel Version <= 304.00
Nvidia ≫ Gpu Driver Update- SwEditionsunos Version <= 304.00
Nvidia ≫ Gpu Driver Version195.22 Update- SwEditionesx
Nvidia ≫ Gpu Driver Version195.22 Update- SwEditionfreebsd
Nvidia ≫ Gpu Driver Version195.22 Update- SwEditionlinux_kernel
Nvidia ≫ Gpu Driver Version195.22 Update- SwEditionsunos
Nvidia ≫ Gpu Driver Version310.00 Update- SwEditionesx
Nvidia ≫ Gpu Driver Version310.00 Update- SwEditionfreebsd
Nvidia ≫ Gpu Driver Version310.00 Update- SwEditionlinux_kernel
Nvidia ≫ Gpu Driver Version310.00 Update- SwEditionsunos
Nvidia ≫ Gpu Driver Version313.00 Update- SwEditionesx
Nvidia ≫ Gpu Driver Version313.00 Update- SwEditionfreebsd
Nvidia ≫ Gpu Driver Version313.00 Update- SwEditionlinux_kernel
Nvidia ≫ Gpu Driver Version313.00 Update- SwEditionsunos
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 5.22% | 0.889 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.1 | 3.9 | 10 |
AV:N/AC:H/Au:S/C:C/I:C/A:C
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.