GPU VulnDB

Database/NVIDIA / GPU stack

NVIDIA Windows GPU Display Driver (nvlddmkm.sys): Use of a dangling pointer in the escape handler, rated code-execution

CVE-2021-1075NVIDIA / GPU stackcurated

Impact

Use of a dangling pointer in the escape handler, rated code-execution capable. Guest-agnostic local kernel bug - unprivileged code to SYSTEM on the GPU host.

Who can reach it

Any local user with GPU device access on a Windows host.

What to do

Install the fixed Windows GPU Display Driver branch listed in the NVIDIA bulletin. nvlddmkm.sys is a kernel driver: the swap needs a host reboot, so on a Windows GPU node this is a drain-and-reboot, not a live driver reload. No VBIOS or BMC flash involved.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.