SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2012-0952

A heap buffer overflow was discovered in the device control ioctl in the Linux driver for Nvidia graphics cards, which may allow an attacker to overflow 49 bytes.

MEDIUM 5.0EPSS 0.31%

Does this matter?

Lower severity and a low EPSS score (0.31%). Track it; it rarely justifies an emergency change on its own.

Description

A heap buffer overflow was discovered in the device control ioctl in the Linux driver for Nvidia graphics cards, which may allow an attacker to overflow 49 bytes. This issue was fixed in version 295.53.

CVSS 3.1
5.0 MEDIUMCVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:L
EPSS
0.31% probability · 23th percentile
CISA KEV
Not listed
Weakness
CWE-119, CWE-787
Affected
nvidia/display driver
Source
security@ubuntu.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.