First published: Wed Apr 21 2021(Updated: )
NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where the program dereferences a pointer that contains a location for memory that is no longer valid, which may lead to code execution, denial of service, or escalation of privileges. Attacker does not have any control over the information and may conduct limited data modification.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
NVIDIA GPU Display Driver | >=418<427.33 | |
NVIDIA GPU Display Driver | >=450<452.96 | |
NVIDIA GPU Display Driver | >=460<462.31 | |
NVIDIA GPU Display Driver | >=465<466.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-1075 has a high severity rating due to potential code execution risks associated with the vulnerability.
To fix CVE-2021-1075, you should update your NVIDIA GPU Display Driver to the latest version available from NVIDIA.
CVE-2021-1075 affects various versions of the NVIDIA GPU Display Driver including versions 418 to 427.33, 450 to 452.96, 460 to 462.31, and 465 to 466.11.
The potential consequences of CVE-2021-1075 include code execution, which could allow an attacker to gain control over the affected system.
Users of NVIDIA Windows GPU Display Drivers within the affected version ranges are impacted by CVE-2021-1075.