← back
CVE-2012-0952

Heap overflow in control device ioctl

CVSS 5 MEDIUMEPSS 0.3%CWE-119
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
08 May 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A heap buffer overflow was discovered in the device control ioctl in the Linux driver for Nvidia graphics cards, which may allow an attacker to overflow 49 bytes. This issue was fixed in version 295.53.
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:L

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →