CVE-2021-1053: Input Validation
Published Jan 8, 2021
·Updated
NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape or IOCTL in which improper validation of a user pointer may lead to denial of service.
Affected Software
9 affected components
Nvidia GPU driver>=390<392.63
Nvidia GPU driver>=418<427.11
Nvidia GPU driver>=450<452.77
Nvidia GPU driver>=460<461.09
Microsoft Windows
Nvidia GPU driver>=390<390.141
Nvidia GPU driver>=450<450.102.04
Nvidia GPU driver>=460<460.32.03
Linux Linux kernel
Event History
Jan 8, 2021
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this NVIDIA GPU Display Driver vulnerability?
The vulnerability ID is CVE-2021-1053.
2
What is the severity level of CVE-2021-1053?
The severity level of CVE-2021-1053 is medium (5.5 out of 10).
3
Which versions of NVIDIA GPU Display Driver for Windows and Linux are affected by CVE-2021-1053?
Versions 390 to 392.63, 418 to 427.11, 450 to 452.77, and 460 to 461.09 are affected by CVE-2021-1053.
4
How can I fix the vulnerability in the NVIDIA GPU Display Driver?
To fix the vulnerability in the NVIDIA GPU Display Driver, update to a version that is not vulnerable.
5
Are Microsoft Windows and Linux kernel affected by this vulnerability?
No, Microsoft Windows and Linux kernel are not affected by this vulnerability.