10
CVSSv2

CVE-2015-5053

Published: 24/11/2015 Updated: 25/11/2015
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The host memory mapping path feature in the NVIDIA GPU graphics driver R346 prior to 346.87 and R352 prior to 352.41 for Linux and R352 prior to 352.46 for GRID vGPU and vSGA does not properly restrict access to third-party device IO memory, which allows malicious users to gain privileges, cause a denial of service (resource consumption), or possibly have unspecified other impact via unknown vectors related to the follow_pfn kernel-mode API call.

Vulnerable Product Search on Vulmon Subscribe to Product

nvidia gpu driver 346.59

nvidia gpu driver 346.47

nvidia gpu driver 346.35

nvidia gpu driver 346.22

nvidia gpu driver 352.41

nvidia gpu driver 346.72

nvidia gpu driver 346.16

nvidia gpu driver 352.09

nvidia gpu driver 352.21

nvidia gpu driver 352.30

nvidia gpu driver 346.82

Github Repositories

GPUDirect Async support for IB Verbs

GPUDirect Async Introduction GPUDirect Async is all about moving control logic from third-party devices to the GPU LibGDSync implements GPUDirect Async support on InfiniBand Verbs, by bridging the gap between the CUDA and the Verbs APIs It consists of a set of low-level APIs which are still very similar to IB Verbs though operating on CUDA streams Requirements CUDA A recent