Kernel Mode Handler Flaw in NVIDIA GPU Display Driver for Linux
CVE-2023-0189
7.8HIGH
Key Information:
- Vendor
- NVIDIA
- Vendor
- CVE Published:
- 1 April 2023
Summary
The NVIDIA GPU Display Driver for Linux has a vulnerability in its kernel mode layer handler. This flaw can lead to severe security implications, including potential code execution, denial of service, privilege escalation, and information disclosure. Attackers may exploit this vulnerability to manipulate system operations or gain unauthorized access to sensitive data.
Affected Version(s)
vGPU software (guest driver - Linux), NVIDIA Cloud Gaming (guest driver - Linux) All versions prior to and including 15.1, 13.6, 11.11, and all versions prior to and including February 2023 release
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved