CVE-2023-31017

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/11/2023
Last modified:
13/11/2023

Description

NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may be able to write arbitrary data to privileged locations by using reparse points. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nvidia:virtual_gpu:*:*:*:*:*:*:*:* 13.9 (excluding)
cpe:2.3:a:nvidia:virtual_gpu:*:*:*:*:*:*:*:* 14.0 (including) 15.4 (excluding)
cpe:2.3:a:nvidia:virtual_gpu:*:*:*:*:*:*:*:* 16.0 (including) 16.2 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools