7.8
CVE-2024-0090
- EPSS 0.17%
- Published 13.06.2024 22:15:12
- Last modified 21.11.2024 08:45:52
- Source psirt@nvidia.com
- Teams watchlist Login
- Open Login
NVIDIA GPU driver for Windows and Linux contains a vulnerability where a user can cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Data is provided by the National Vulnerability Database (NVD)
Nvidia ≫ Gpu Display Driver SwPlatformwindows Version >= 470 < 475.06
Nvidia ≫ Gpu Display Driver SwPlatformwindows Version >= 535 < 538.67
Nvidia ≫ Gpu Display Driver SwPlatformwindows Version >= 550 < 552.55
Nvidia ≫ Gpu Display Driver SwPlatformwindows Version >= 555 < 555.99
Nvidia ≫ Gpu Display Driver SwPlatformlinux Version >= 470 < 470.256.02
Nvidia ≫ Gpu Display Driver SwPlatformlinux Version >= 535 < 535.180.01
Nvidia ≫ Gpu Display Driver SwPlatformlinux Version >= 550 < 550.90.07
Nvidia ≫ Gpu Display Driver SwPlatformlinux Version >= 555 < 555.52.04
Nvidia ≫ Virtual Gpu Version < 13.11
Canonical ≫ Ubuntu Linux Version-
Citrix ≫ Hypervisor Version-
Linux ≫ Linux Kernel Version-
Microsoft ≫ Windows Version-
Redhat ≫ Enterprise Linux Kernel-based Virtual Machine Version-
VMware ≫ Vsphere Version-
Citrix ≫ Hypervisor Version-
Linux ≫ Linux Kernel Version-
Microsoft ≫ Windows Version-
Redhat ≫ Enterprise Linux Kernel-based Virtual Machine Version-
VMware ≫ Vsphere Version-
Nvidia ≫ Virtual Gpu Version >= 14.0 < 16.6
Canonical ≫ Ubuntu Linux Version-
Citrix ≫ Hypervisor Version-
Linux ≫ Linux Kernel Version-
Microsoft ≫ Windows Version-
Redhat ≫ Enterprise Linux Kernel-based Virtual Machine Version-
VMware ≫ Vsphere Version-
Citrix ≫ Hypervisor Version-
Linux ≫ Linux Kernel Version-
Microsoft ≫ Windows Version-
Redhat ≫ Enterprise Linux Kernel-based Virtual Machine Version-
VMware ≫ Vsphere Version-
Nvidia ≫ Virtual Gpu Version >= 17.0 < 17.2
Canonical ≫ Ubuntu Linux Version-
Citrix ≫ Hypervisor Version-
Linux ≫ Linux Kernel Version-
Microsoft ≫ Windows Version-
Redhat ≫ Enterprise Linux Kernel-based Virtual Machine Version-
VMware ≫ Vsphere Version-
Citrix ≫ Hypervisor Version-
Linux ≫ Linux Kernel Version-
Microsoft ≫ Windows Version-
Redhat ≫ Enterprise Linux Kernel-based Virtual Machine Version-
VMware ≫ Vsphere Version-
Nvidia ≫ Cloud Gaming Version < 555.99
Nvidia ≫ Cloud Gaming Version < 555.52.04
Linux ≫ Linux Kernel Version-
Redhat ≫ Enterprise Linux Kernel-based Virtual Machine Version-
VMware ≫ Vsphere Version-
Redhat ≫ Enterprise Linux Kernel-based Virtual Machine Version-
VMware ≫ Vsphere Version-
Nvidia ≫ Virtual Gpu Version < 17.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.17% | 0.388 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
psirt@nvidia.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.