6.2

CVE-2021-1093

NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in firmware where the driver contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary, and may lead to denial of service or system crash.

Data is provided by the National Vulnerability Database (NVD)
NvidiaGpu Display Driver SwPlatformlinux Version >= 418.197.02 < 418.211.00
NvidiaGpu Display Driver SwPlatformwindows Version >= 427.33 < 427.48
NvidiaGpu Display Driver SwPlatformlinux Version >= 450.119.03 < 450.142.00
NvidiaGpu Display Driver SwPlatformwindows Version >= 452.96 < 453.10
NvidiaGpu Display Driver SwPlatformlinux Version >= 460.73.01 < 460.91.03
NvidiaGpu Display Driver SwPlatformwindows Version >= 462.31 < 462.96
DebianDebian Linux Version9.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.08% 0.234
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:N/A:C
psirt@nvidia.com 6.2 2.5 3.6
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-404 Improper Resource Shutdown or Release

The product does not release or incorrectly releases a resource before it is made available for re-use.