A remote denial-of-service vulnerability exists in the way the Nouveau Display Driver (the default Ubuntu Nvidia display driver) handles GPU shader execution. A specially crafted pixel shader can cause remote denial-of-service issues. An attacker can provide a specially crafted website to trigger this vulnerability. This vulnerability can be triggered remotely after the user visits a malformed website. No further user interaction is required. Vulnerable versions include Ubuntu 18.04 LTS (linux 4.15.0-29-generic x86_64), Nouveau Display Driver NV117 (vermagic: 4.15.0-29-generic SMP mod_unload).

Project Subscriptions

Vendors Products
Canonical Subscribe
Ubuntu Linux Subscribe
Geforce Gtx 745 Subscribe
Geforce Gtx 745 Firmware Subscribe
Geforce Gtx 750 Subscribe
Geforce Gtx 750 Firmware Subscribe
Geforce Gtx 750 Ti Subscribe
Geforce Gtx 750 Ti Firmware Subscribe
Geforce Gtx 840m Subscribe
Geforce Gtx 840m Firmware Subscribe
Geforce Gtx 845m Subscribe
Geforce Gtx 845m Firmware Subscribe
Geforce Gtx 850m Subscribe
Geforce Gtx 850m Firmware Subscribe
Geforce Gtx 860m Subscribe
Geforce Gtx 860m Firmware Subscribe
Geforce Gtx 950m Subscribe
Geforce Gtx 950m Firmware Subscribe
Geforce Gtx 960m Subscribe
Geforce Gtx 960m Firmware Subscribe
Grid M30 Subscribe
Grid M30 Firmware Subscribe
Grid M40 Subscribe
Grid M40 Firmware Subscribe
Quadro K1200 Subscribe
Quadro K1200 Firmware Subscribe
Quadro K2200 Subscribe
Quadro K2200 Firmware Subscribe
Quadro K620 Subscribe
Quadro K620 Firmware Subscribe
Quadro M1000m Subscribe
Quadro M1000m Firmware Subscribe
Quadro M1200m Subscribe
Quadro M1200m Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2018-15765 A remote denial-of-service vulnerability exists in the way the Nouveau Display Driver (the default Ubuntu Nvidia display driver) handles GPU shader execution. A specially crafted pixel shader can cause remote denial-of-service issues. An attacker can provide a specially crafted website to trigger this vulnerability. This vulnerability can be triggered remotely after the user visits a malformed website. No further user interaction is required. Vulnerable versions include Ubuntu 18.04 LTS (linux 4.15.0-29-generic x86_64), Nouveau Display Driver NV117 (vermagic: 4.15.0-29-generic SMP mod_unload).
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: talos

Published:

Updated: 2024-08-05T04:57:24.572Z

Reserved: 2018-01-02T00:00:00

Link: CVE-2018-3979

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-04-01T21:30:43.110

Modified: 2024-11-21T04:06:25.557

Link: CVE-2018-3979

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses