Unauthorized File Access in NVIDIA GPU Display Driver for Linux
CVE-2024-0149
3.3LOW
Key Information:
- Vendor
- Nvidia
- Vendor
- CVE Published:
- 28 January 2025
Summary
A vulnerability in the NVIDIA GPU Display Driver for Linux grants potential unauthorized access to sensitive files. If exploited, this flaw can lead to limited information disclosure, raising serious security concerns for users operating vulnerable versions of the driver. Maintaining updated software and applying security patches promptly is essential to mitigate risks associated with this vulnerability.
Affected Version(s)
NVIDIA GPU Display Driver, vGPU software R535, R550
References
CVSS V3.1
Score:
3.3
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved