6.9
CVSSv2

CVE-2015-5950

Published: 30/09/2015 Updated: 08/12/2016
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The NVIDIA display driver R352 prior to 353.82 and R340 prior to 341.81 on Windows; R304 prior to 304.128, R340 prior to 340.93, and R352 prior to 352.41 on Linux; and R352 prior to 352.46 on GRID vGPU and vSGA allows local users to write to an arbitrary kernel memory location and consequently gain privileges via a crafted ioctl call.

Vulnerable Product Search on Vulmon Subscribe to Product

nvidia gpu driver

nvidia display driver 304.125

nvidia display driver

nvidia display driver 304.119

nvidia display driver 304.108

nvidia display driver 352.30

nvidia display driver 352.21

nvidia display driver 304.123

nvidia display driver 304.121

nvidia display_driver 353.06

nvidia display_driver 341.44

nvidia display_driver 340.52

nvidia display_driver 340.43

nvidia display_driver

Vendor Advisories

Debian Bug report logs - #800566 nvidia-graphics-drivers: CVE-2015-5950 Memory corruption due to an unsanitized pointer in the NVIDIA display driver Package: src:nvidia-graphics-drivers; Maintainer for src:nvidia-graphics-drivers is Debian NVIDIA Maintainers <pkg-nvidia-devel@listsaliothdebianorg>; Reported by: Andreas Bec ...
Potential security vulnerabilities have been identified with certain HP PCs and workstations with Windows and Linux running the NVIDIA Graphics Driver The vulnerabilities could be locally exploited resulting in Denial of Service (DoS) and elevation of privilege Note: This issue is present on Windows and Linux operating systems and affects all ...