NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko): Out-of-bounds array access in the escape handler
CVSS 6.1CVE-2021-1094NVIDIA / GPU stackcurated
Impact
Out-of-bounds array access in the escape handler on Windows and Linux, giving disclosure or a crash from unprivileged local code.
Who can reach it
Any local user or GPU container with device access.
What to do
Install the fixed GPU Display Driver branch on both Windows and Linux nodes. The kernel component (nvlddmkm.sys / nvidia.ko) cannot be hot-swapped under load, so this is a node drain and reboot per host; restart the container runtime afterwards so mounted driver libraries match the kernel module. No VBIOS or BMC flash.
References
Related entries
- NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko): Improper validation of a user-supplied pointerCVE-2021-1053 · NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko)Medium
- NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko): All control calls with embedded parametersCVE-2021-1095 · NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko)Medium
- NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko): NULL dereference in the kernel-mode layer reachableCVE-2018-6249 · NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko)High
- NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko): User-mode clients can reach legacy privileged APIsCVE-2021-1052 · NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko)High
- NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko): Out-of-bounds read or write in the kernel-modeCVE-2021-1090 · NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko)High
- NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko): Improper access control in the kernel-mode layerCVE-2021-1076 · NVIDIA GPU Display Driver (Windows nvlddmkm.sys + Linux nvidia.ko)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.