6.9
CVE-2015-5950
- EPSS 0.36%
- Veröffentlicht 30.09.2015 01:59:17
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
The NVIDIA display driver R352 before 353.82 and R340 before 341.81 on Windows; R304 before 304.128, R340 before 340.93, and R352 before 352.41 on Linux; and R352 before 352.46 on GRID vGPU and vSGA allows local users to write to an arbitrary kernel memory location and consequently gain privileges via a crafted ioctl call.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Nvidia ≫ Gpu Driver Version <= 352.30
Nvidia ≫ Display Driver SwPlatform linux Version <= 352.09
Nvidia ≫ Display Driver Version 304.108 SwPlatform linux
Nvidia ≫ Display Driver Version 304.119 SwPlatform linux
Nvidia ≫ Display Driver Version 304.121 SwPlatform linux
Nvidia ≫ Display Driver Version 304.123 SwPlatform linux
Nvidia ≫ Display Driver Version 304.125 SwPlatform linux
Nvidia ≫ Display Driver Version 352.21 SwPlatform linux
Nvidia ≫ Display Driver Version 352.30 SwPlatform linux
Nvidia ≫ Display Driver Version <= 352.86
Nvidia ≫ Display Driver Version 340.43
Nvidia ≫ Display Driver Version 340.52
Nvidia ≫ Display Driver Version 341.44
Nvidia ≫ Display Driver Version 353.06
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.36% | 0.28 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 6.9 | 3.4 | 10 |
AV:L/AC:M/Au:N/C:C/I:C/A:C
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
http://nvidia.custhelp.com/app/answers/detail/a_id/3763/~/cve-2015-5950-memory-corruption-due-to-an-unsanitized-pointer-in-the-nvidia
http://www.securitytracker.com/id/1033662
http://www.ubuntu.com/usn/USN-2747-1
https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04815468
https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04815468
https://support.lenovo.com/us/en/product_security/len_3313