HIGH · 7.8

CVE-2020-5958

NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attacker with local system access can plant a malicious DLL file, which may ...

Vulnerability Description

NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attacker with local system access can plant a malicious DLL file, which may lead to code execution, denial of service, or information disclosure.

CVSS Score

7.8

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
NvidiaQuadro Firmware>= 390, < 392.59
NvidiaQuadro-
NvidiaGeforce Experience>= 440, < 442.50
MicrosoftWindows-
NvidiaTesla Firmware>= 440, < 440.33.01
NvidiaTesla-

References

FAQ

What is CVE-2020-5958?

CVE-2020-5958 is a vulnerability with a CVSS score of 7.8 (HIGH). NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attacker with local system access can plant a malicious DLL file, which may ...

How severe is CVE-2020-5958?

CVE-2020-5958 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-5958?

Check the references section above for vendor advisories and patch information. Affected products include: Nvidia Quadro Firmware, Nvidia Quadro, Nvidia Geforce Experience, Microsoft Windows, Nvidia Tesla Firmware.