Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-23201

Опубликовано: 20 нояб. 2021
Источник: nvd
CVSS3: 7.5
CVSS2: 6.9
EPSS Низкий

Описание

NVIDIA GPU and Tegra hardware contain a vulnerability in an internal microcontroller, which may allow a user with elevated privileges to generate valid microcode by identifying, exploiting, and loading vulnerable microcode. Such an attack could lead to information disclosure, data corruption, or denial of service of the device. The scope may extend to other components.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:h:nvidia:geforce_gtx_950:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gtx_960:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gtx_970:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gtx_980:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:geforce_gtx_titan_x:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:jetson_nano:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:jetson_nano:-:*:-:*:*:*:*:*
cpe:2.3:h:nvidia:jetson_nano:-:*:developer_kit:*:*:*:*:*
cpe:2.3:h:nvidia:jetson_tx1:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m1000m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m1200:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m2000:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m2000m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m2200:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m3000m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m4000:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m4000m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m5000:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m5000m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m500m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m520:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m5500:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m6000:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m600m:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quadro_m620:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:shield_tv:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:shield_tv_pro:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:tesla_m10:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:tesla_m2050:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:tesla_m2070:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:tesla_m2070q:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:tesla_m2090:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:tesla_m4:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:tesla_m40:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:tesla_m6:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:tesla_m60:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:tesla_p100:-:*:*:*:*:*:*:*

Одно из

cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

EPSS

Процентиль: 11%
0.00038
Низкий

7.5 High

CVSS3

6.9 Medium

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
почти 4 года назад

NVIDIA GPU and Tegra hardware contain a vulnerability in an internal microcontroller which may allow a user with elevated privileges to generate valid microcode. This could lead to information disclosure, data corruption, or denial of service of the device.

EPSS

Процентиль: 11%
0.00038
Низкий

7.5 High

CVSS3

6.9 Medium

CVSS2

Дефекты

NVD-CWE-noinfo