Lucene search

K
cve[email protected]CVE-2020-5963
HistoryJun 25, 2020 - 12:15 a.m.

CVE-2020-5963

2020-06-2500:15:10
web.nvd.nist.gov
62
nvidia
windows
gpu
display driver
vulnerability
inter process communication
apis
access control
code execution
denial of service
information disclosure

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

15.9%

NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the Inter Process Communication APIs, in which improper access control may lead to code execution, denial of service, or information disclosure.

Affected configurations

NVD
Node
nvidiaquadro_firmwareRange390390.138
OR
nvidiaquadro_firmwareRange440440.100
OR
nvidiaquadro_firmwareRange450450.51
AND
nvidiaquadroMatch-
Node
nvidiatesla_firmwareRange418418.152.00
OR
nvidiatesla_firmwareRange440440.95.01
OR
nvidiatesla_firmwareRange450450.51.05
AND
nvidiateslaMatch-
Node
nvidiageforce_firmwareRange390390.138
OR
nvidiageforce_firmwareRange440440.100
OR
nvidiageforce_firmwareRange450450.51
AND
nvidiageforceMatch-
Node
nvidianvs_firmwareRange390390.138
OR
nvidianvs_firmwareRange440440.100
OR
nvidianvs_firmwareRange450450.51
AND
nvidianvsMatch-
Node
canonicalubuntu_linuxMatch18.04lts
OR
canonicalubuntu_linuxMatch19.10
OR
canonicalubuntu_linuxMatch20.04lts
Node
nvidiaquadro_firmwareRange390392.61
OR
nvidiaquadro_firmwareRange418426.78
OR
nvidiaquadro_firmwareRange440443.18
OR
nvidiaquadro_firmwareRange450451.48
AND
nvidiaquadroMatch-
Node
nvidiatesla_firmwareRange418426.78
OR
nvidiatesla_firmwareRange440443.18
AND
nvidiateslaMatch-
Node
nvidiageforce_firmwareRange450451.48
AND
nvidiageforceMatch-
Node
nvidianvs_firmwareRange390392.61
OR
nvidianvs_firmwareRange418426.78
OR
nvidianvs_firmwareRange440443.18
OR
nvidianvs_firmwareRange450451.48
AND
nvidianvsMatch-

CNA Affected

[
  {
    "product": "NVIDIA GPU Display Driver",
    "vendor": "NVIDIA",
    "versions": [
      {
        "status": "affected",
        "version": "All"
      }
    ]
  }
]

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

15.9%