Impact
NVIDIA GPU Display Drivers for Windows and Linux contain an out‑of‑bounds read in the kernel‑mode component. A successful exploit can expose kernel memory contents, and the description states that such exposure might enable code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Affected Systems
The flaw affects NVIDIA GPU Display Drivers on Windows and Linux for all NVIDIA GPU series, including GeForce, RTX, Quadro, NVS, and Tesla. No specific driver version information is provided, so any installation using the vulnerable driver should be considered at risk.
Risk and Exploitability
The CVSS score of 7.8 marks this vulnerability as high severity, and the EPSS score is not available. It is not listed in CISA KEV. The likely attack vector is inferred to require a local user with access to the GPU Driver, as the vulnerability resides in kernel mode. A local kernel read can provide the foundation for more severe attacks such as privilege escalation and code execution.
OpenCVE Enrichment