7.8

CVE-2021-1052

NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape or IOCTL in which user-mode clients can access legacy privileged APIs, which may lead to denial of service, escalation of privileges, and information disclosure.

Data is provided by the National Vulnerability Database (NVD)
NvidiaGpu Driver Version >= 390 < 392.63
   MicrosoftWindows Version-
NvidiaGpu Driver Version >= 418 < 427.11
   MicrosoftWindows Version-
NvidiaGpu Driver Version >= 450 < 452.77
   MicrosoftWindows Version-
NvidiaGpu Driver Version >= 460 < 461.09
   MicrosoftWindows Version-
NvidiaGpu Driver Version >= 390 < 390.141
   LinuxLinux Kernel Version-
NvidiaGpu Driver Version >= 450 < 450.102.04
   LinuxLinux Kernel Version-
NvidiaGpu Driver Version >= 460 < 460.32.03
   LinuxLinux Kernel Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.17% 0.381
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C