CVE-2024-0149: wait3() system call as a side-channel in setuid programs (nvidia-modprobe CVE-2024-0149)
Published Jan 28, 2025
·Updated
NVIDIA GPU Display Driver for Linux contains a vulnerability which could allow an attacker unauthorized access to files. A successful exploit of this vulnerability might lead to limited information disclosure.
Affected Software
1 affected component
Nvidia GPU Display Driver for Linux
Event History
Jan 28, 2025
CVE Published
via MITRE·04:04 AM
Data Sourced
via MITRE·04:04 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-0149?
CVE-2024-0149 is identified as a vulnerability that poses a risk of unauthorized file access, potentially leading to information disclosure.
2
Who is affected by CVE-2024-0149?
CVE-2024-0149 affects users of the NVIDIA GPU Display Driver for Linux.
3
How do I fix CVE-2024-0149?
To fix CVE-2024-0149, users should update their NVIDIA GPU Display Driver for Linux to the latest version provided by NVIDIA.
4
What type of attacks can be executed via CVE-2024-0149?
CVE-2024-0149 could be exploited to gain unauthorized access to files on the system.
5
Is there a workaround for CVE-2024-0149?
There are currently no specific workarounds for CVE-2024-0149 other than applying the recommended updates from NVIDIA.