CVE Vulnerabilities

CVE-2015-1170

Published: Mar 06, 2015 | Modified: Dec 08, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
HIGH

The NVIDIA Display Driver R304 before 309.08, R340 before 341.44, R343 before 345.20, and R346 before 347.52 does not properly validate local client impersonation levels when performing a kernel administrator check, which allows local users to gain administrator privileges via unspecified API calls.

Affected Software

Name Vendor Start Version End Version
Gpu_driver_r304 Nvidia * 309.07 (including)
Gpu_driver_r340 Nvidia * 341.43 (including)
Gpu_driver_r343 Nvidia * 345.19 (including)
Gpu_driver_r346 Nvidia * 347.51 (including)
Nvidia-graphics-drivers Ubuntu lucid *
Nvidia-graphics-drivers-173 Ubuntu lucid *
Nvidia-graphics-drivers-180 Ubuntu lucid *
Nvidia-graphics-drivers-310-updates Ubuntu devel *
Nvidia-graphics-drivers-310-updates Ubuntu trusty *
Nvidia-graphics-drivers-310-updates Ubuntu utopic *
Nvidia-graphics-drivers-319 Ubuntu devel *
Nvidia-graphics-drivers-319 Ubuntu precise *
Nvidia-graphics-drivers-319 Ubuntu trusty *
Nvidia-graphics-drivers-319 Ubuntu utopic *
Nvidia-graphics-drivers-319-updates Ubuntu devel *
Nvidia-graphics-drivers-319-updates Ubuntu precise *
Nvidia-graphics-drivers-319-updates Ubuntu trusty *
Nvidia-graphics-drivers-319-updates Ubuntu utopic *
Nvidia-graphics-drivers-96 Ubuntu lucid *
Nvidia-graphics-drivers-experimental-304 Ubuntu precise *
Nvidia-graphics-drivers-experimental-310 Ubuntu precise *

References