CVE-2021-1115: Null Pointer Dereference
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for private IOCTLs, where an attacker with local unprivileged system access may cause a NULL pointer dereference, which may lead to denial of service in a component beyond the vulnerable component.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-1115?
CVE-2021-1115 is a vulnerability in the NVIDIA GPU Display Driver for Windows that allows an attacker with local unprivileged system access to cause a NULL pointer dereference, leading to denial of service.
How does CVE-2021-1115 affect NVIDIA GPU Display Driver for Windows?
CVE-2021-1115 affects the kernel mode layer (nvlddmkm.sys) handler for private IOCTLs in the NVIDIA GPU Display Driver for Windows, potentially causing a denial of service.
What is the severity of CVE-2021-1115?
CVE-2021-1115 has a severity rating of 6.5 (Medium).
Which versions of NVIDIA GPU Display Driver for Windows are affected by CVE-2021-1115?
Versions 390 to 392.68, 460 to 463.15, 470 to 472.39, and 490 to 496.49 of the NVIDIA GPU Display Driver for Windows are affected by CVE-2021-1115.
How can I fix CVE-2021-1115?
To fix CVE-2021-1115, update your NVIDIA GPU Display Driver for Windows to a version that is not affected by the vulnerability.