VulnerabilityModified
CVE-2012-0952
A heap buffer overflow was discovered in the device control ioctl in the Linux driver for Nvidia graphics cards, which may allow an attacker to overflow 49 bytes.
MEDIUM 5.0EPSS 0.31%
Does this matter?
Lower severity and a low EPSS score (0.31%). Track it; it rarely justifies an emergency change on its own.
Description
A heap buffer overflow was discovered in the device control ioctl in the Linux driver for Nvidia graphics cards, which may allow an attacker to overflow 49 bytes. This issue was fixed in version 295.53.
- CVSS 3.1
- 5.0 MEDIUMCVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:L
- EPSS
- 0.31% probability · 23th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119, CWE-787
- Affected
- nvidia/display driver
- Source
- security@ubuntu.com
References
- https://bugs.launchpad.net/ubuntu/+source/nvidia-graphics-drivers/+bug/979373Exploit, Third Party Advisory
- https://bugs.launchpad.net/ubuntu/+source/nvidia-graphics-drivers/+bug/979373Exploit, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.