Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-1075


NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where the program dereferences a pointer that contains a location for memory that is no longer valid, which may lead to code execution, denial of service, or escalation of privileges. Attacker does not have any control over the information and may conduct limited data modification.


Published

2021-04-21T23:15:07.667

Last Modified

2024-11-21T05:43:32.847

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.3 (HIGH)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:N/I:P/A:C

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: PARTIAL
  • Availability Impact: COMPLETE
Exploitability Score

3.9

Impact Score

7.8

Weaknesses
  • Type: Primary
    CWE-476

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application nvidia gpu_display_driver < 427.33 Yes
Application nvidia gpu_display_driver < 452.96 Yes
Application nvidia gpu_display_driver < 462.31 Yes
Application nvidia gpu_display_driver < 466.11 Yes

References