Nvidia Gpu Driver vulnerabilities
38 known vulnerabilities affecting nvidia/gpu_driver.
Total CVEs
38
CISA KEV
0
Public exploits
14
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH28MEDIUM8
Vulnerabilities
Page 1 of 2
CVE-2016-8807P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-8807 [HIGH] CWE-264 CVE-2016-8807: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x10000e9 where a value is passed from an user to the driver is used without validation as the size input to memcpy() causing a stack bu
nvd
CVE-2016-7391P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-7391 [HIGH] CWE-264 CVE-2016-7391: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x100010b where a missing array bounds check can allow a user to write to kernel memory, leading to denial of service or potential escal
nvd
CVE-2016-8811P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-8811 [HIGH] CWE-264 CVE-2016-8811: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x7000170 where the size of an input buffer is not validated, leading to denial of service or potential escalation of privileges.
nvd
CVE-2016-8809P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-8809 [HIGH] CWE-20 CVE-2016-8809: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x70001b2 where the size of an input buffer is not validated, leading to denial of service or potential escalation of privileges.
nvd
CVE-2016-8808P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-8808 [HIGH] CWE-264 CVE-2016-8808: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x70000d5 where a value passed from an user to the driver is used without validation as the index to an internal array, leading to denia
nvd
CVE-2016-7390P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-7390 [HIGH] CWE-264 CVE-2016-7390: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x7000194 where a value passed from a user to the driver is used without validation as the index to an internal array, leading to denial
nvd
CVE-2016-8805P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-8805 [HIGH] CWE-264 CVE-2016-8805: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x7000014 where a value passed from an user to the driver is used without validation as the index to an internal array, leading to denia
nvd
CVE-2016-8810P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-8810 [HIGH] CWE-264 CVE-2016-8810: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x100009a where a value passed from an user to the driver is used without validation as the index to an internal array, leading to denia
nvd
CVE-2016-7387P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-7387 [HIGH] CWE-264 CVE-2016-7387: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x600000D where a value passed from a user to the driver is used without validation as the index to an internal array, leading to denial
nvd
CVE-2016-8806P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-8806 [HIGH] CWE-264 CVE-2016-8806: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x5000027 where a pointer passed from an user to the driver is used without validation, leading to denial of service or potential escala
nvd
CVE-2016-7385P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-7385 [HIGH] CWE-264 CVE-2016-7385: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x700010d where a value passed from a user to the driver is used without validation as the index to an internal array, leading to denial
nvd
CVE-2016-7384P3HIGHCVSS 7.8PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-7384 [HIGH] CWE-264 CVE-2016-7384: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) where unchecked input/output lengths in UVMLiteController Device IO Control handling may lead to denial of service or potential escalation of privileges.
nvd
CVE-2015-7865P3HIGHCVSS 7.7PoC≥ 340, < 341.92≥ 352, < 354.35+1 more2015-11-24
CVE-2015-7865 [HIGH] CVE-2015-7865: nvSCPAPISvr.exe in the Stereoscopic 3D Driver Service in the NVIDIA GPU graphics driver R340 before
nvSCPAPISvr.exe in the Stereoscopic 3D Driver Service in the NVIDIA GPU graphics driver R340 before 341.92, R352 before 354.35, and R358 before 358.87 on Windows does not properly restrict access to the stereosvrpipe named pipe, which allows local users to gain privileges via a commandline in a number 2 command, which is stored in the HKEY_LOCAL_MACHINE explorer
nvd
CVE-2016-7386P4MEDIUMCVSS 5.5PoC≥ 340, < 342.00≥ 375, < 375.632016-11-08
CVE-2016-7386 [MEDIUM] CWE-200 CVE-2016-7386: For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape ID 0x70000D4 which may lead to leaking of kernel memory contents to user space through an uninitialized buffer.
nvd
CVE-2014-8298P3HIGHCVSS 7.5vr304.125vr331.00+9 more2014-12-10
CVE-2014-8298 [HIGH] CWE-19 CVE-2014-8298: The NVIDIA Linux Discrete GPU drivers before R304.125, R331.x before R331.113, R340.x before R340.65
The NVIDIA Linux Discrete GPU drivers before R304.125, R331.x before R331.113, R340.x before R340.65, R343.x before R343.36, and R346.x before R346.22, Linux for Tegra (L4T) driver before R21.2, and Chrome OS driver before R40 allows remote attackers to cause a denial of service (segmentation fault and X server crash) or possibly execute arbitrary code v
nvd
CVE-2015-5053P3CRITICALCVSS 10.0v346.16v346.22+9 more2015-11-24
CVE-2015-5053 [CRITICAL] CWE-284 CVE-2015-5053: The host memory mapping path feature in the NVIDIA GPU graphics driver R346 before 346.87 and R352 b
The host memory mapping path feature in the NVIDIA GPU graphics driver R346 before 346.87 and R352 before 352.41 for Linux and R352 before 352.46 for GRID vGPU and vSGA does not properly restrict access to third-party device IO memory, which allows attackers to gain privileges, cause a denial of service (resource consumption), or possibly have unspe
nvd
CVE-2016-7382P3HIGHCVSS 7.8v304.131v340.98+4 more2016-11-08
CVE-2016-7382 [HIGH] CWE-275 CVE-2016-7382: For the NVIDIA Quadro, NVS, GeForce, and Tesla products, NVIDIA GPU Display Driver contains a vulner
For the NVIDIA Quadro, NVS, GeForce, and Tesla products, NVIDIA GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys for Windows or nvidia.ko for Linux) handler where a missing permissions check may allow users to gain access to arbitrary physical memory, leading to an escalation of privileges.
nvd
CVE-2016-7389P3HIGHCVSS 7.8v304.79v340.52+3 more2016-11-08
CVE-2016-7389 [HIGH] CWE-264 CVE-2016-7389: For the NVIDIA Quadro, NVS, GeForce, and Tesla products, NVIDIA GPU Display Driver on Linux R304 bef
For the NVIDIA Quadro, NVS, GeForce, and Tesla products, NVIDIA GPU Display Driver on Linux R304 before 304.132, R340 before 340.98, R367 before 367.55, R361_93 before 361.93.03, and R370 before 370.28 contains a vulnerability in the kernel mode layer (nvidia.ko) handler for mmap() where improper input validation may allow users to gain access to arbitr
nvd
CVE-2013-0131P3HIGHCVSS 7.1≤ 304.00v195.22+2 more2013-04-08
CVE-2013-0131 [HIGH] CWE-119 CVE-2013-0131: Buffer overflow in the NVIDIA GPU driver before 304.88, 310.x before 310.44, and 313.x before 313.30
Buffer overflow in the NVIDIA GPU driver before 304.88, 310.x before 310.44, and 313.x before 313.30 for the X Window System on UNIX, when NoScanout mode is enabled, allows remote authenticated users to execute arbitrary code via a large ARGB cursor.
nvd
CVE-2021-1052P3HIGHCVSS 7.8≥ 390, < 392.63≥ 418, < 427.11+5 more2021-01-08
CVE-2021-1052 [HIGH] CVE-2021-1052: NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kerne
NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape or IOCTL in which user-mode clients can access legacy privileged APIs, which may lead to denial of service, escalation of privileges, and information disclosure.
nvd
1 / 2Next →