Out-of-Bounds Write Vulnerability in NVIDIA GPU Display Driver for Windows
CVE-2023-0186
7.1HIGH
Key Information:
- Vendor
- NVIDIA
- Vendor
- CVE Published:
- 1 April 2023
Summary
The NVIDIA GPU Display Driver for Windows has a vulnerability in its kernel mode layer, which allows an out-of-bounds write. This can potentially lead to denial of service and enable unauthorized manipulation of data, posing a security risk for users. It is crucial for organizations using affected versions to assess their systems and apply the necessary updates to mitigate these risks.
Affected Version(s)
vGPU software (guest driver - Windows), NVIDIA Cloud Gaming (guest driver - Windows) All versions prior to and including 15.1, 13.6, 11.11, and all versions prior to and including February 2023 release
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved