CVE-2021-1115

MEDIUM

NVIDIA GPU Display Driver 390-392.68 - Denial of Service via Kernel Mode Layer Private IOCTL Handler

Title source: llm
STIX 2.1

Description

NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for private IOCTLs, where an attacker with local unprivileged system access may cause a NULL pointer dereference, which may lead to denial of service in a component beyond the vulnerable component.

References (1)

Core 1
Core References
Patch, Vendor Advisory x_refsource_confirm
https://nvidia.custhelp.com/app/answers/detail/a_id/5230

Scores

CVSS v3 6.5
EPSS 0.0004
EPSS Percentile 12.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H

Details

CWE
CWE-476
Status published
Products (1)
nvidia/gpu_display_driver 390 - 392.68
Published Oct 27, 2021
Tracked Since Feb 18, 2026