CVE-2024-0090
HIGHDescription
NVIDIA GPU driver for Windows and Linux contains a vulnerability where a user can cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Is your site exposed to CVE-2024-0090?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| nvidia | gpu_display_driver |
| nvidia | gpu_display_driver |
| nvidia | gpu_display_driver |
| nvidia | gpu_display_driver |
| nvidia | geforce |
| nvidia | nvs |
| nvidia | quadro |
| nvidia | rtx |
| nvidia | studio |
| nvidia | tesla |
| nvidia | gpu_display_driver |
| nvidia | gpu_display_driver |
| nvidia | gpu_display_driver |
| nvidia | gpu_display_driver |
| nvidia | geforce |
| nvidia | nvs |
| nvidia | quadro |
| nvidia | rtx |
| nvidia | tesla |
| nvidia | virtual_gpu |
| nvidia | virtual_gpu |
| nvidia | virtual_gpu |
| canonical | ubuntu_linux |
| citrix | hypervisor |
| linux | linux_kernel |
| microsoft | windows |
| redhat | enterprise_linux_kernel-based_virtual_machine |
| vmware | vsphere |
| nvidia | cloud_gaming |
| microsoft | windows |
| nvidia | cloud_gaming |
| linux | linux_kernel |
| redhat | enterprise_linux_kernel-based_virtual_machine |
| vmware | vsphere |
| nvidia | virtual_gpu |
| microsoft | azure_stack_hci |
References
Frequently Asked Questions
What is CVE-2024-0090? +
How severe is CVE-2024-0090? +
What products are affected by CVE-2024-0090? +
How do I check if I'm vulnerable to CVE-2024-0090? +
Related Vulnerabilities
LibreOffice Calc can import tracked changes from a spreadsheet document. A heap buffer overflow existed when a document reused the …
LibreOffice can import presentations in the legacy binary PPT format. A stack buffer overflow existed when importing a colour-replacement record. …
A heap use-after-free existed when importing the blank-width characters of an ODF number format. A position value read from the …
LibreOffice can import drawings in the DXF format used by CAD software. A heap buffer overflow existed when importing a …
The method "sock_recvfrom_into()" of "asyncio.ProacterEventLoop" (Windows only) was missing a boundary check for the data buffer when using nbytes parameter. …
editorconfig-core-c is an EditorConfig core library for use by plugins supporting EditorConfig parsing. Versions up to and including 0.12.10 have …