First published: Sun Apr 22 2012(Updated: )
The NVIDIA UNIX driver before 295.40 allows local users to access arbitrary memory locations by leveraging GPU device-node read/write privileges.
Credit: security@ubuntu.com
Affected Software | Affected Version | How to fix |
---|---|---|
NVIDIA Graphics Driver | <=295.40 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0946 has a medium severity rating due to its potential to allow local users to access sensitive memory locations.
To fix CVE-2012-0946, update the NVIDIA UNIX driver to version 295.40 or later.
Local users of systems running the affected versions of the NVIDIA UNIX driver are at risk from CVE-2012-0946.
CVE-2012-0946 is a memory access vulnerability that can be exploited due to improper handling of GPU device-node permissions.
No, CVE-2012-0946 is only exploitable by local users who have access to the system.