First published: Wed Apr 21 2021(Updated: )
NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel driver (nvlddmkm.sys) where a NULL pointer dereference may lead to system crash.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
NVIDIA GPU Display Driver | >=390<392.65 | |
NVIDIA GPU Display Driver | >=418<427.33 | |
NVIDIA GPU Display Driver | >=450<452.96 | |
NVIDIA GPU Display Driver | >=460<462.31 | |
NVIDIA GPU Display Driver | >=465<466.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-1078 is considered a medium severity vulnerability in NVIDIA Windows GPU Display Drivers.
To mitigate CVE-2021-1078, update your NVIDIA GPU Display Driver to the latest version provided by NVIDIA.
CVE-2021-1078 affects multiple versions of NVIDIA GPU Display Driver including versions between 390 and 392.65, 418 and 427.33, 450 and 452.96, 460 and 462.31, and 465 and 466.11.
CVE-2021-1078 can lead to a system crash due to a NULL pointer dereference in the kernel driver.
There are no official workarounds for CVE-2021-1078; the recommended action is to update the driver to a secure version.