CVE-2024-0107

NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular user can cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvidiaCNA
7.8 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 6%
VendorProductVersion
nvidiagpu_display_driver
470 ≤
𝑥
< 475.14
nvidiagpu_display_driver
555 ≤
𝑥
< 556.12
nvidiagpu_display_driver
470 ≤
𝑥
< 475.14
nvidiagpu_display_driver
535 ≤
𝑥
< 538.78
nvidiagpu_display_driver
550 ≤
𝑥
< 552.74
nvidiavirtual_gpu
𝑥
< 13.12
nvidiavirtual_gpu
14.0 ≤
𝑥
< 16.7
nvidiavirtual_gpu
17.0 ≤
𝑥
< 17.3
nvidiacloud_gaming
-
𝑥
= Vulnerable software versions