Vulnerability Description
NVIDIA GPU and Tegra hardware contain a vulnerability in the internal microcontroller which may allow a user with elevated privileges to utilize debug mechanisms with insufficient access control, which may lead to information disclosure.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Nvidia | Dgx-1 P100 | - |
| Nvidia | Dgx-1 V100 | - |
| Nvidia | Dgx-2 | - |
| Nvidia | Dgx Station A100 | - |
| Nvidia | Drive Constellation | - |
| Nvidia | Geforce Gt 605 | - |
| Nvidia | Geforce Gt 610 | - |
| Nvidia | Geforce Gt 620 | - |
| Nvidia | Geforce Gt 625 | - |
| Nvidia | Geforce Gt 630 | - |
| Nvidia | Geforce Gt 635 | - |
| Nvidia | Geforce Gt 640 | - |
| Nvidia | Geforce Gt 705 | - |
| Nvidia | Geforce Gt 710 | - |
| Nvidia | Geforce Gt 720 | - |
| Nvidia | Geforce Gt 730 | - |
| Nvidia | Geforce Gt 740 | - |
| Nvidia | Geforce Gtx 1050 | - |
| Nvidia | Geforce Gtx 1050 Ti | - |
| Nvidia | Geforce Gtx 1060 | - |
References
- https://nvidia.custhelp.com/app/answers/detail/a_id/5263Vendor Advisory
- https://nvidia.custhelp.com/app/answers/detail/a_id/5263Vendor Advisory
FAQ
What is CVE-2021-1088?
CVE-2021-1088 is a vulnerability with a CVSS score of 4.1 (MEDIUM). NVIDIA GPU and Tegra hardware contain a vulnerability in the internal microcontroller which may allow a user with elevated privileges to utilize debug mechanisms with insufficient access control, whic...
How severe is CVE-2021-1088?
CVE-2021-1088 has been rated MEDIUM with a CVSS base score of 4.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-1088?
Check the references section above for vendor advisories and patch information. Affected products include: Nvidia Dgx-1 P100, Nvidia Dgx-1 V100, Nvidia Dgx-2, Nvidia Dgx Station A100, Nvidia Drive Constellation.