4.6
CVSSv2

CVE-2020-5991

Published: 30/10/2020 Updated: 13/11/2020
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

NVIDIA CUDA Toolkit, all versions before 11.1.1, contains a vulnerability in the NVJPEG library in which an out-of-bounds read or write operation may lead to code execution, denial of service, or information disclosure.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

nvidia cuda_toolkit

Vendor Advisories

Debian Bug report logs - #973543 nvidia-cuda-toolkit: CVE-2020-5991 Package: src:nvidia-cuda-toolkit; Maintainer for src:nvidia-cuda-toolkit is Debian NVIDIA Maintainers <pkg-nvidia-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sun, 1 Nov 2020 14:54:02 UTC Severity: grav ...