CVE-2024-0091
HIGHDescription
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where a user can cause an untrusted pointer dereference by executing a driver API. A successful exploit of this vulnerability might lead to denial of service, information disclosure, and data tampering.
Is your site exposed to CVE-2024-0091?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| nvidia | gpu_display_driver |
| nvidia | gpu_display_driver |
| nvidia | geforce |
| nvidia | nvs |
| nvidia | quadro |
| nvidia | rtx |
| nvidia | studio |
| nvidia | tesla |
| nvidia | gpu_display_driver |
| nvidia | gpu_display_driver |
| nvidia | geforce |
| nvidia | nvs |
| nvidia | quadro |
| nvidia | rtx |
| nvidia | tesla |
| nvidia | virtual_gpu |
| nvidia | virtual_gpu |
| nvidia | virtual_gpu |
| canonical | ubuntu_linux |
| citrix | hypervisor |
| linux | linux_kernel |
| microsoft | windows |
| redhat | enterprise_linux_kernel-based_virtual_machine |
| vmware | vsphere |
| nvidia | cloud_gaming |
| microsoft | windows |
| nvidia | cloud_gaming |
| linux | linux_kernel |
| redhat | enterprise_linux_kernel-based_virtual_machine |
| vmware | vsphere |
| nvidia | virtual_gpu |
| microsoft | azure_stack_hci |
References
Frequently Asked Questions
What is CVE-2024-0091? +
How severe is CVE-2024-0091? +
What products are affected by CVE-2024-0091? +
How do I check if I'm vulnerable to CVE-2024-0091? +
Related Vulnerabilities
Attacker model / Preconditions: a loaded `TXM_MODULE_USER_MODE | TXM_MODULE_MEMORY_PROTECTION` module issuing kernel dispatch calls, on a build with `TX_ENABLE_EVENT_TRACE`. A …
An unprivileged, memory-protected ThreadX module can have the kernel read and write memory at addresses of its choosing, in privileged …
Improper validation of non-secure (NS) pointers in multiple TrustZone-M non-secure callable (NSC) entry functions allows an attacker executing in the …
An untrusted pointer dereference in the ionic cloud driver for VMWare ESXi could allow an attacker with an unprivileged VM …
Untrusted pointer dereference in the render_bin_output function in the h5dump tool in HDF5 before 2.1.1 allows attackers to cause a …
Untrusted pointer dereference for some Intel(R) QuickAssist Adapter 8960 software before version 1.13 within Ring 3: User Applications may allow …