MEDIUM · 6.9

CVE-2015-5950

The NVIDIA display driver R352 before 353.82 and R340 before 341.81 on Windows; R304 before 304.128, R340 before 340.93, and R352 before 352.41 on Linux; and R352 before 352.46 on GRID vGPU and vSGA a...

Vulnerability Description

The NVIDIA display driver R352 before 353.82 and R340 before 341.81 on Windows; R304 before 304.128, R340 before 340.93, and R352 before 352.41 on Linux; and R352 before 352.46 on GRID vGPU and vSGA allows local users to write to an arbitrary kernel memory location and consequently gain privileges via a crafted ioctl call.

CVSS Score

6.9

MEDIUM

AV:L/AC:M/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
NvidiaGpu Driver<= 352.30
NvidiaDisplay Driver<= 352.09
MicrosoftWindowsAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2015-5950?

CVE-2015-5950 is a vulnerability with a CVSS score of 6.9 (MEDIUM). The NVIDIA display driver R352 before 353.82 and R340 before 341.81 on Windows; R304 before 304.128, R340 before 340.93, and R352 before 352.41 on Linux; and R352 before 352.46 on GRID vGPU and vSGA a...

How severe is CVE-2015-5950?

CVE-2015-5950 has been rated MEDIUM with a CVSS base score of 6.9/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2015-5950?

Check the references section above for vendor advisories and patch information. Affected products include: Nvidia Gpu Driver, Nvidia Display Driver, Microsoft Windows.