CVE Vulnerabilities

CVE-2018-6249

NULL Pointer Dereference

Published: Apr 02, 2018 | Modified: Nov 21, 2024
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

NVIDIA GPU Display Driver contains a vulnerability in kernel mode layer handler where a NULL pointer dereference may lead to denial of service or potential escalation of privileges.

Weakness

The product dereferences a pointer that it expects to be valid but is NULL.

Affected Software

NameVendorStart VersionEnd Version
Gpu_driverNvidia- (including)- (including)
Nvidia-graphics-drivers-173Ubuntutrusty*
Nvidia-graphics-drivers-304Ubuntuartful*
Nvidia-graphics-drivers-304Ubuntuesm-infra/xenial*
Nvidia-graphics-drivers-304Ubuntutrusty*
Nvidia-graphics-drivers-304Ubuntuxenial*
Nvidia-graphics-drivers-340Ubuntuartful*
Nvidia-graphics-drivers-340Ubuntubionic*
Nvidia-graphics-drivers-340Ubuntudevel*
Nvidia-graphics-drivers-340Ubuntuesm-infra/bionic*
Nvidia-graphics-drivers-340Ubuntuesm-infra/xenial*
Nvidia-graphics-drivers-340Ubuntutrusty*
Nvidia-graphics-drivers-340Ubuntuxenial*
Nvidia-graphics-drivers-384Ubuntuartful*
Nvidia-graphics-drivers-384Ubuntuesm-apps/xenial*
Nvidia-graphics-drivers-384Ubuntutrusty*
Nvidia-graphics-drivers-384Ubuntuupstream*
Nvidia-graphics-drivers-384Ubuntuxenial*
Nvidia-graphics-drivers-390Ubuntuupstream*

Potential Mitigations

References