First published: Wed Mar 11 2020(Updated: )
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attacker with local system access can plant a malicious DLL file, which may lead to code execution, denial of service, or information disclosure.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nvidia Quadro Firmware | >=390<392.59 | |
Nvidia Quadro Firmware | >=418<426.50 | |
Nvidia Quadro Firmware | >=430<432.28 | |
Nvidia Quadro Firmware | >=440<442.50 | |
Nvidia Quadro | ||
NVIDIA GeForce Experience | >=440<442.50 | |
Microsoft Windows | ||
Nvidia Tesla Firmware | >=440<440.33.01 | |
Nvidia Tesla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-5958 is a vulnerability in the NVIDIA Control Panel component of the NVIDIA Windows GPU Display Driver that allows an attacker with local system access to plant a malicious DLL file, potentially leading to code execution, denial of service, or information disclosure.
Versions of the Nvidia Quadro Firmware between 390 and 392.59, 418 and 426.50, 430 and 432.28, and 440 and 442.50 are affected by CVE-2020-5958.
No, Nvidia Quadro is not affected by CVE-2020-5958.
No, Nvidia Tesla is not affected by CVE-2020-5958.
To fix CVE-2020-5958, it is recommended to upgrade to a non-vulnerable version of the Nvidia Quadro Firmware or NVIDIA GeForce Experience.