Hardware Vulnerability in GPU Memory Modules Affecting Multiple Vendors
CVE-2018-10229
4.8MEDIUM
Summary
A significant hardware vulnerability exists in GPU memory modules, which can be exploited by malicious actors to facilitate rapid micro-architectural attacks. This vulnerability leverages the JavaScript WebGL API, allowing attackers to manipulate GPU operations and potentially extract sensitive information. Users of various GPU models need to be aware of these risks and enhance their security measures to safeguard against such exploits. For more detailed insights, refer to the advisory documents linked in the references.
References
CVSS V3.1
Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved