cbcvebase.
CVE-2021-1052
published 2021-01-08

CVE-2021-1052: NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape or…

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape or IOCTL in which user-mode clients can access legacy privileged APIs, which may lead to denial of service, escalation of privileges, and information disclosure.

Affected

14 ranges
VendorProductVersion rangeFixed in
debiannvidia-graphics-drivers< nvidia-graphics-drivers 460.32.03-1 (bookworm)nvidia-graphics-drivers 460.32.03-1 (bookworm)
debiannvidia-graphics-drivers-tesla-450< nvidia-graphics-drivers 460.32.03-1 (bookworm)nvidia-graphics-drivers 460.32.03-1 (bookworm)
linuxlinux_kernel>= 0 < 4.15.0-134.1384.15.0-134.138
linuxlinux_kernel>= 0 < 4.15.0-130.1344.15.0-130.134
linuxlinux_kernel>= 0 < 5.4.0-64.725.4.0-64.72
linuxlinux_kernel>= 0 < 5.4.0-60.675.4.0-60.67
nvidiagpu_driver>= 390 < 392.63392.63
nvidiagpu_driver>= 390 < 390.141390.141
nvidiagpu_driver>= 418 < 427.11427.11
nvidiagpu_driver>= 450 < 452.77452.77
nvidiagpu_driver>= 450 < 450.102.04450.102.04
nvidiagpu_driver>= 460 < 461.09461.09
nvidiagpu_driver>= 460 < 460.32.03460.32.03
nvidianvidia_gpu_display_driver

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH