// For flags

CVE-2021-1077

Gentoo Linux Security Advisory 202310-02

Severity Score

5.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

NVIDIA GPU Display Driver for Windows and Linux, R450 and R460 driver branch, contains a vulnerability where the software uses a reference count to manage a resource that is incorrectly updated, which may lead to denial of service.

NVIDIA GPU Display Driver para Windows y Linux, la rama del controlador R450 y R460, contiene Una vulnerabilidad en la que el software usa un recuento de referencia para administrar un recurso que se actualiza inapropiadamente, lo que puede llevar a la denegaciĆ³n de servicio

It was discovered that the NVIDIA GPU display driver for the Linux kernel incorrectly performed access control. A local attacker could use this issue to cause a denial of service, expose sensitive information, or escalate privileges. It was discovered that the NVIDIA GPU display driver for the Linux kernel incorrectly performed reference counting. A local attacker could use this issue to cause a denial of service. Various other issues were also addressed.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
Low
Availability
High
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2020-11-12 CVE Reserved
  • 2021-04-21 CVE Published
  • 2024-08-03 CVE Updated
  • 2025-03-18 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-404: Improper Resource Shutdown or Release
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Nvidia
Search vendor "Nvidia"
Gpu Display Driver
Search vendor "Nvidia" for product "Gpu Display Driver"
>= 450 < 450.119.03
Search vendor "Nvidia" for product "Gpu Display Driver" and version " >= 450 < 450.119.03"
linux
Affected
Nvidia
Search vendor "Nvidia"
Gpu Display Driver
Search vendor "Nvidia" for product "Gpu Display Driver"
>= 450 < 452.96
Search vendor "Nvidia" for product "Gpu Display Driver" and version " >= 450 < 452.96"
windows
Affected
Nvidia
Search vendor "Nvidia"
Gpu Display Driver
Search vendor "Nvidia" for product "Gpu Display Driver"
>= 460 < 460.73.01
Search vendor "Nvidia" for product "Gpu Display Driver" and version " >= 460 < 460.73.01"
linux
Affected
Nvidia
Search vendor "Nvidia"
Gpu Display Driver
Search vendor "Nvidia" for product "Gpu Display Driver"
>= 460 < 462.31
Search vendor "Nvidia" for product "Gpu Display Driver" and version " >= 460 < 462.31"
windows
Affected