CVE-2021-1093

NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in firmware where the driver contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary, and may lead to denial of service or system crash.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:linux:*:*
cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:windows:*:*
cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:linux:*:*
cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:windows:*:*
cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:linux:*:*
cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:windows:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

History

13 Oct 2023, 01:43

Type Values Removed Values Added
References (GENTOO) https://security.gentoo.org/glsa/202310-02 - (GENTOO) https://security.gentoo.org/glsa/202310-02 - Third Party Advisory

03 Oct 2023, 15:15

Type Values Removed Values Added
References
  • (GENTOO) https://security.gentoo.org/glsa/202310-02 -

09 Mar 2022, 21:35

Type Values Removed Values Added
First Time Debian
Debian debian Linux
References (MLIST) https://lists.debian.org/debian-lts-announce/2022/01/msg00013.html - (MLIST) https://lists.debian.org/debian-lts-announce/2022/01/msg00013.html - Mailing List, Third Party Advisory
CPE cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

18 Jan 2022, 23:15

Type Values Removed Values Added
References
  • (MLIST) https://lists.debian.org/debian-lts-announce/2022/01/msg00013.html -

30 Jul 2021, 18:26

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 4.9
v3 : 5.5
CWE CWE-404
References (CONFIRM) https://nvidia.custhelp.com/app/answers/detail/a_id/5211 - (CONFIRM) https://nvidia.custhelp.com/app/answers/detail/a_id/5211 - Patch, Vendor Advisory
CPE cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:linux:*:*
cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:windows:*:*

22 Jul 2021, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-07-22 05:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-1093

Mitre link : CVE-2021-1093

CVE.ORG link : CVE-2021-1093


JSON object : View

Products Affected

nvidia

  • gpu_display_driver

debian

  • debian_linux
CWE
CWE-404

Improper Resource Shutdown or Release