7.5

CVE-2014-8298

The NVIDIA Linux Discrete GPU drivers before R304.125, R331.x before R331.113, R340.x before R340.65, R343.x before R343.36, and R346.x before R346.22, Linux for Tegra (L4T) driver before R21.2, and Chrome OS driver before R40 allows remote attackers to cause a denial of service (segmentation fault and X server crash) or possibly execute arbitrary code via a crafted GLX indirect rendering protocol request.

Data is provided by the National Vulnerability Database (NVD)
NvidiaGpu Driver Versionr304.125 SwPlatformlinux_kernel
NvidiaGpu Driver Versionr331.00 SwPlatformlinux_kernel
NvidiaGpu Driver Versionr331.112 SwPlatformlinux_kernel
NvidiaGpu Driver Versionr340.00 SwPlatformlinux_kernel
NvidiaGpu Driver Versionr340.65 SwPlatformlinux_kernel
NvidiaGpu Driver Versionr343.00 SwPlatformlinux_kernel
NvidiaGpu Driver Versionr343.36 SwPlatformlinux_kernel
NvidiaGpu Driver Versionr346.00 SwPlatformlinux_kernel
NvidiaGpu Driver Versionr346.22 SwPlatformlinux_kernel
NvidiaGpu Driver SwPlatformlinux_kernel HwPlatformtegra Version <= r21.2
NvidiaGpu Driver SwPlatformchrome_os Version <= r39
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.5% 0.793
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P