CVE-2012-0952

Publication date 8 May 2020

Last updated 24 July 2024


Ubuntu priority

Cvss 3 Severity Score

5.0 · Medium

Score breakdown

A heap buffer overflow was discovered in the device control ioctl in the Linux driver for Nvidia graphics cards, which may allow an attacker to overflow 49 bytes. This issue was fixed in version 295.53.

Status

Package Ubuntu Release Status
nvidia-graphics-drivers 13.04 raring Not in release
12.10 quantal
Fixed 304.88-0ubuntu0.1
12.04 LTS precise
Fixed 304.88-0ubuntu0.0.2
10.04 LTS lucid Ignored end of life

Severity score breakdown

Parameter Value
Base score 5.0 · Medium
Attack vector Local
Attack complexity High
Privileges required High
User interaction None
Scope Changed
Confidentiality Low
Integrity impact Low
Availability impact Low
Vector CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:L