First published: Wed Oct 27 2021(Updated: )
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for private IOCTLs, where an attacker with local unprivileged system access may cause a NULL pointer dereference, which may lead to denial of service in a component beyond the vulnerable component.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nvidia Gpu Display Driver | >=390<392.68 | |
Nvidia Gpu Display Driver | >=460<463.15 | |
Nvidia Gpu Display Driver | >=470<472.39 | |
Nvidia Gpu Display Driver | >=490<496.49 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-1115 is a vulnerability in the NVIDIA GPU Display Driver for Windows that allows an attacker with local unprivileged system access to cause a NULL pointer dereference, leading to denial of service.
CVE-2021-1115 affects the kernel mode layer (nvlddmkm.sys) handler for private IOCTLs in the NVIDIA GPU Display Driver for Windows, potentially causing a denial of service.
CVE-2021-1115 has a severity rating of 6.5 (Medium).
Versions 390 to 392.68, 460 to 463.15, 470 to 472.39, and 490 to 496.49 of the NVIDIA GPU Display Driver for Windows are affected by CVE-2021-1115.
To fix CVE-2021-1115, update your NVIDIA GPU Display Driver for Windows to a version that is not affected by the vulnerability.