CVE-2024-0091
Published: 13 June 2024
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where a user can cause an untrusted pointer dereference by executing a driver API. A successful exploit of this vulnerability might lead to denial of service, information disclosure, and data tampering.
Notes
Author | Note |
---|---|
mdeslaur |
some binary drivers are no longer support by NVidia, so they are marked as ignored here |
Priority
Status
Package | Release | Status |
---|---|---|
nvidia-graphics-drivers-304
Launchpad, Ubuntu, Debian |
focal |
Does not exist
|
jammy |
Does not exist
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
xenial |
Ignored
|
|
nvidia-graphics-drivers-304-updates
Launchpad, Ubuntu, Debian |
focal |
Does not exist
|
jammy |
Does not exist
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
xenial |
Not vulnerable
(superseded)
|
|
nvidia-graphics-drivers-340
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Not vulnerable
(superseded)
|
|
mantic |
Not vulnerable
(superseded)
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
xenial |
Ignored
|
|
nvidia-graphics-drivers-340-updates
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Does not exist
|
|
jammy |
Does not exist
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
xenial |
Not vulnerable
(superseded)
|
|
nvidia-graphics-drivers-352
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Does not exist
|
|
jammy |
Does not exist
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
xenial |
Not vulnerable
(superseded)
|
|
nvidia-graphics-drivers-352-updates
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Does not exist
|
|
jammy |
Does not exist
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
xenial |
Not vulnerable
(superseded)
|
|
nvidia-graphics-drivers-361
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Does not exist
|
|
jammy |
Does not exist
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
xenial |
Not vulnerable
(superseded)
|
|
nvidia-graphics-drivers-367
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Does not exist
|
|
jammy |
Does not exist
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
xenial |
Not vulnerable
(superseded)
|
|
nvidia-graphics-drivers-375
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Does not exist
|
|
jammy |
Does not exist
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
xenial |
Not vulnerable
(superseded)
|
|
nvidia-graphics-drivers-384
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Does not exist
|
|
jammy |
Does not exist
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
xenial |
Ignored
|
|
nvidia-graphics-drivers-390
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-418-server
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-430
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Ignored
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-435
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Ignored
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-440
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Ignored
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-440-server
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-450
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Ignored
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-450-server
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-455
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Ignored
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-460
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Ignored
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-460-server
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Does not exist
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-470
Launchpad, Ubuntu, Debian |
bionic |
Needs triage
|
focal |
Pending
(470.256.02-0ubuntu0.20.04.1)
|
|
jammy |
Pending
(470.256.02-0ubuntu0.22.04.1)
|
|
mantic |
Ignored
(end of life, was ignored [EoL soon])
|
|
noble |
Released
(470.256.02-0ubuntu0.24.04.1)
|
|
upstream |
Released
(470.256.02)
|
|
nvidia-graphics-drivers-470-server
Launchpad, Ubuntu, Debian |
bionic |
Needs triage
|
focal |
Pending
(470.256.02-0ubuntu0.20.04.1)
|
|
jammy |
Pending
(470.256.02-0ubuntu0.22.04.1)
|
|
mantic |
Ignored
(end of life, was ignored [EoL soon])
|
|
noble |
Released
(470.256.02-0ubuntu0.23.04.1)
|
|
upstream |
Released
(470.256.02)
|
|
nvidia-graphics-drivers-495
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Not vulnerable
(superseded)
|
|
jammy |
Does not exist
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-510
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Ignored
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-510-server
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Not vulnerable
(superseded)
|
|
jammy |
Not vulnerable
(superseded)
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Not vulnerable
(superseded)
|
|
nvidia-graphics-drivers-515
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Ignored
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-515-server
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Ignored
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-520
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Does not exist
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-525
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Not vulnerable
(superseded)
|
|
jammy |
Not vulnerable
(superseded)
|
|
mantic |
Not vulnerable
(superseded)
|
|
noble |
Not vulnerable
(superseded)
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-525-server
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Not vulnerable
(superseded)
|
|
jammy |
Not vulnerable
(superseded)
|
|
mantic |
Not vulnerable
(superseded)
|
|
noble |
Not vulnerable
(superseded)
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-530
Launchpad, Ubuntu, Debian |
bionic |
Ignored
|
focal |
Ignored
|
|
jammy |
Ignored
|
|
mantic |
Ignored
|
|
noble |
Does not exist
|
|
upstream |
Ignored
|
|
nvidia-graphics-drivers-535
Launchpad, Ubuntu, Debian |
focal |
Released
(535.183.01-0ubuntu0.20.04.1)
|
jammy |
Released
(535.183.01-0ubuntu0.22.04.1)
|
|
mantic |
Ignored
(end of life, was ignored [EoL soon])
|
|
noble |
Released
(535.183.01-0ubuntu0.24.04.1)
|
|
upstream |
Released
(535.183.01)
|
|
nvidia-graphics-drivers-535-server
Launchpad, Ubuntu, Debian |
focal |
Released
(535.183.01-0ubuntu0.20.04.1)
|
jammy |
Released
(535.183.01-0ubuntu0.22.04.1)
|
|
mantic |
Ignored
(end of life, was ignored [EoL soon])
|
|
noble |
Released
(535.183.01-0ubuntu0.24.04.1)
|
|
upstream |
Released
(535.183.01)
|
Severity score breakdown
Parameter | Value |
---|---|
Base score | 7.8 |
Attack vector | Local |
Attack complexity | Low |
Privileges required | Low |
User interaction | None |
Scope | Unchanged |
Confidentiality | High |
Integrity impact | High |
Availability impact | High |
Vector | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |