CVE-2021-1056: High severity nvidia gpu kernel driver vulnerability
Published Jan 8, 2021
·Updated
NVIDIA GPU Display Driver for Linux, all versions, contains a vulnerability in the kernel mode layer (nvidia.ko) in which it does not completely honor operating system file system permissions to provide GPU device-level isolation, which may lead to denial of service or information disclosure.
Affected Software
5 affected components
Nvidia GPU driver>=390<390.141
Nvidia GPU driver>=450<450.102.04
Nvidia GPU driver>=460<460.32.03
Linux Linux kernel
Debian Debian Linux=9.0
Event History
Jan 8, 2021
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2021-1056.
2
What is the affected software?
The affected software is NVIDIA GPU Display Driver for Linux.
3
What is the severity of CVE-2021-1056?
The severity of CVE-2021-1056 is high with a CVSS score of 7.1.
4
What are the potential impact of this vulnerability?
The potential impact of this vulnerability includes denial of service or information disclosure.
5
Where can I find more information about this vulnerability?
You can find more information about this vulnerability at the following references: [1] [2] [3]