7.8

CVE-2023-25515



NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where unexpected untrusted data is parsed, which may lead to code execution, denial of service, escalation of privileges, data tampering, or information disclosure.

 

Data is provided by the National Vulnerability Database (NVD)
NvidiaGpu Display Driver SwPlatformwindows Version >= 470 < 474.44
   NvidiaGeforce Version-
NvidiaGpu Display Driver SwPlatformwindows Version >= 530 < 536.23
   NvidiaGeforce Version-
NvidiaGpu Display Driver SwPlatformwindows Version >= 530 < 536.40
   NvidiaStudio Version-
NvidiaGpu Display Driver SwPlatformwindows Version >= 470 < 474.44
   NvidiaNvs Version-
   NvidiaQuadro Version-
   NvidiaRtx Version-
NvidiaGpu Display Driver SwPlatformwindows Version >= 525 < 529.11
   NvidiaNvs Version-
   NvidiaQuadro Version-
   NvidiaRtx Version-
NvidiaGpu Display Driver SwPlatformwindows Version >= 530 < 536.25
   NvidiaNvs Version-
   NvidiaQuadro Version-
   NvidiaRtx Version-
NvidiaGpu Display Driver SwPlatformwindows Version >= 450 < 454.23
   NvidiaTesla Version-
NvidiaGpu Display Driver SwPlatformwindows Version >= 470 < 474.44
   NvidiaTesla Version-
NvidiaGpu Display Driver SwPlatformwindows Version >= 525 < 529.11
   NvidiaTesla Version-
NvidiaGpu Display Driver SwPlatformwindows Version >= 530 < 536.25
   NvidiaTesla Version-
NvidiaGpu Display Driver SwPlatformlinux Version >= 470 < 470.199.02
   NvidiaGeforce Version-
   NvidiaNvs Version-
   NvidiaQuadro Version-
   NvidiaRtx Version-
NvidiaGpu Display Driver SwPlatformlinux Version >= 525 < 525.125.06
   NvidiaGeforce Version-
   NvidiaNvs Version-
   NvidiaQuadro Version-
   NvidiaRtx Version-
NvidiaGpu Display Driver SwPlatformlinux Version >= 530 < 535.54.03
   NvidiaGeforce Version-
   NvidiaNvs Version-
   NvidiaQuadro Version-
   NvidiaRtx Version-
NvidiaGpu Display Driver SwPlatformlinux Version >= 450 < 450.248.02
   NvidiaTesla Version-
NvidiaGpu Display Driver SwPlatformlinux Version >= 470 < 470.199.02
   NvidiaTesla Version-
NvidiaGpu Display Driver SwPlatformlinux Version >= 525 < 525.125.06
   NvidiaTesla Version-
NvidiaGpu Display Driver SwPlatformlinux Version >= 530 < 535.54.03
   NvidiaTesla Version-
NvidiaVirtual Gpu Version < 11.12
   MicrosoftWindows Version-
NvidiaVirtual Gpu Version >= 13.0 < 13.7
   MicrosoftWindows Version-
NvidiaVirtual Gpu Version >= 15.0 < 15.2
   MicrosoftWindows Version-
NvidiaCloud Gaming Version < 531.79
   MicrosoftWindows Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.06% 0.195
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.6 0.9 6
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
psirt@nvidia.com 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-822 Untrusted Pointer Dereference

The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.