cbcvebase.

Nvidia Tesla vulnerabilities

29 known vulnerabilities affecting nvidia/tesla.

Total CVEs
29
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH18MEDIUM9LOW2

Vulnerabilities

Page 2 of 2
CVE-2026-24182P4MEDIUMCVSS 6.5vAll driver versions prior to 595.71.05vAll driver versions prior to 580.159.03+4 more2026-05-26
CVE-2026-24182 [MEDIUM] CWE-667 CVE-2026-24182: NVIDIA Display Driver for Windows and Linux contains a vulnerability where an attacker could leak he NVIDIA Display Driver for Windows and Linux contains a vulnerability where an attacker could leak held driver locks. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2026-24198P4MEDIUMCVSS 5.6vAll driver versions prior to 595.71.05vAll driver versions prior to 580.159.032026-05-26
CVE-2026-24198 [MEDIUM] CWE-200 CVE-2026-24198: NVIDIA GPU Display Driver for Linux contains a vulnerability where an advanced attacker could use a NVIDIA GPU Display Driver for Linux contains a vulnerability where an advanced attacker could use a race condition to leak sensitive memory, which might cause limited exposure of sensitive information to an unauthorized actor. A successful exploit of this vulnerability might lead to denial of service, data tampering, and information disclosure.
nvd
CVE-2025-23330P4MEDIUMCVSS 5.5vAll driver versions prior to 580.95.05vAll driver versions prior to 570.195.03+1 more2025-10-23
CVE-2025-23330 [MEDIUM] CWE-476 CVE-2025-23330: NVIDIA Display Driver for Linux contains a vulnerability where an attacker might be able to trigger NVIDIA Display Driver for Linux contains a vulnerability where an attacker might be able to trigger a null pointer dereference. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-23300P4MEDIUMCVSS 5.5vAll driver versions prior to 580.95.05vAll driver versions prior to 570.195.03+1 more2025-10-23
CVE-2025-23300 [MEDIUM] CWE-476 CVE-2025-23300: NVIDIA Display Driver for Linux contains a vulnerability in the kernel driver, where a user could ca NVIDIA Display Driver for Linux contains a vulnerability in the kernel driver, where a user could cause a null pointer dereference by allocating a specific memory resource. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-23332P4MEDIUMCVSS 5.0vAll driver versions prior to 580.95.05vAll driver versions prior to 570.195.03+1 more2025-10-23
CVE-2025-23332 [MEDIUM] CWE-476 CVE-2025-23332: NVIDIA Display Driver for Linux contains a vulnerability in a kernel module, where an attacker might NVIDIA Display Driver for Linux contains a vulnerability in a kernel module, where an attacker might be able to trigger a null pointer deference. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2026-24199P4MEDIUMCVSS 4.7vAll driver versions prior to 595.71.05vAll driver versions prior to 580.159.03+1 more2026-05-26
CVE-2026-24199 [MEDIUM] CWE-362 CVE-2026-24199: NVIDIA Display Driver for Linux contains a vulnerability in a kernel module, where a user could caus NVIDIA Display Driver for Linux contains a vulnerability in a kernel module, where a user could cause a race condition by reordering compiler or processor memory instructions. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-23345P4MEDIUMCVSS 4.4vAll driver versions prior to 581.42vAll driver versions prior to 573.76+4 more2025-10-23
CVE-2025-23345 [MEDIUM] CWE-125 CVE-2025-23345: NVIDIA Display Driver for Windows and Linux contains a vulnerability in a video decoder, where an at NVIDIA Display Driver for Windows and Linux contains a vulnerability in a video decoder, where an attacker might cause an out-of-bounds read. A successful exploit of this vulnerability might lead to information disclosure or denial of service.
nvd
CVE-2026-48596P4LOW≥ 0.8.0, < 1.18.32026-07-10
CVE-2026-48596 [LOW] CWE-113 Tesla has CRLF injection in request `Content-Type` header via `add_content_type_param` Tesla has CRLF injection in request `Content-Type` header via `add_content_type_param` ### Summary `Tesla.Multipart.add_content_type_param/2` appends caller-supplied strings to the multipart `Content-Type` header with no validation. A param value containing `\r\n` splits the header line, allowing an attacker who controls any content-type parameter (charset, boundary parameter, et
ghsa
CVE-2026-48598P4LOW≥ 0.8.0, < 1.18.32026-07-10
CVE-2026-48598 [LOW] CWE-116 Tesla vulnerable to multipart part smuggling via unescaped `content-disposition` values Tesla vulnerable to multipart part smuggling via unescaped `content-disposition` values ### Summary `Tesla.Multipart.part_headers_for_disposition/1` interpolates `Content-Disposition` parameter values (field name, filename, and other opts) verbatim into the part header line without encoding or escaping any special characters. An attacker who controls a filename, field name, or o
ghsa
Nvidia Tesla vulnerabilities | cvebase