GPU Display Driver (Windows): Local privesc via named-pipe server access
CVSS 7.8CVE-2023-31019NVIDIA / GPU stackcurated
Impact
Local privesc via named-pipe server access
Who can reach it
Local low-priv user
What to do
Upgrade Oct-2023 driver branch
References
Related entries
- GPU Display Driver (Windows): Arbitrary code exec via uncontrolled search pathCVE-2023-31016 · GPU Display Driver (Windows)High
- GPU Display Driver (Windows): DoS / data tamperingCVE-2023-31020 · GPU Display Driver (Windows)Medium
- GPU Display Driver (Windows): DoS (untrusted pointer deref)CVE-2023-31023 · GPU Display Driver (Windows)Medium
- GPU Display Driver (Windows): Arbitrary write to privileged locations via reparse pointsCVE-2023-31017 · GPU Display Driver (Windows)High
- GPU Display Driver (Windows): Local privesc during driver updateCVE-2023-31027 · GPU Display Driver (Windows)High
- Linux kernel amdgpu GEM/VM/command-submission ioctl surface: A use-after-free in the amdgpu GEM/VM/command-submissionCVE-2023-51042 · Linux kernel amdgpu GEM/VM/command-submission ioctl surfaceHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.