Impact
NVIDIA GPU Display Driver for Windows and Linux contains a use‑after‑free vulnerability caused by improper cleanup of reference counts during error paths in the kernel mode layer. A successful exploitation could allow an adversary to execute arbitrary code, crash the system, elevate privileges, disclose sensitive information, or tamper with data.
Affected Systems
The affected products are NVIDIA GeForce, RTX, Quadro, NVS, Tesla, Guest driver, and Virtual GPU Manager drivers on both Windows and Linux platforms. No specific product version information is provided.
Risk and Exploitability
The CVSS score of 7.8 indicates a high severity vulnerability. EPSS is not available, and the issue is not listed in the CISA KEV catalog, so the current exploitation probability is unknown. Based on the description, the likely attack vector is local exploitation of the kernel mode driver, potentially allowing privileged code execution through a use‑after‑free condition.
OpenCVE Enrichment