Unauthorized File Access in NVIDIA GPU Display Driver for Linux
CVE-2024-0149

3.3LOW

Key Information:

Vendor
Nvidia
Vendor
CVE Published:
28 January 2025

Summary

A vulnerability in the NVIDIA GPU Display Driver for Linux grants potential unauthorized access to sensitive files. If exploited, this flaw can lead to limited information disclosure, raising serious security concerns for users operating vulnerable versions of the driver. Maintaining updated software and applying security patches promptly is essential to mitigate risks associated with this vulnerability.

Affected Version(s)

NVIDIA GPU Display Driver, vGPU software R535, R550

References

CVSS V3.1

Score:
3.3
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.