Out-of-Bounds Write Vulnerability in NVIDIA GPU Display Driver for Windows
CVE-2023-0186

7.1HIGH

Key Information:

Summary

The NVIDIA GPU Display Driver for Windows has a vulnerability in its kernel mode layer, which allows an out-of-bounds write. This can potentially lead to denial of service and enable unauthorized manipulation of data, posing a security risk for users. It is crucial for organizations using affected versions to assess their systems and apply the necessary updates to mitigate these risks.

Affected Version(s)

vGPU software (guest driver - Windows), NVIDIA Cloud Gaming (guest driver - Windows) All versions prior to and including 15.1, 13.6, 11.11, and all versions prior to and including February 2023 release

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.