Archived NVIDIA Product Security Bulletins

For a list of current Security Bulletins and more information, check Security Bulletin page.

Bulletin ID
Title
Severity
CVE Identifier(s)
Publish Date
Last Updated
4601Security Bulletin: NVIDIA Linux for Tegra (L4T) ''KRACK'' vulnerabilitiesHigh''KRACK'' Vulnerabilities: Escalation of Privileges or Information Disclosure: CVE-2017-13077, CVE-2017-13078, CVE-2017-13079, CVE-2017-13080, CVE-2017-13081, CVE-2017-13082, CVE-2017-13086, CVE-2017-13087, CVE-2017-1308820 Dec 201701 Jan 2018
4569Security Bulletin: NVIDIA Shield Tablet contains multiple vulnerabilities; updates for ''BlueBorne'' and ''KRACK''MediumDenial of service or possible escalation of privileges: CVE-2017-0331, CVE-2017-0340, CVE-2017-0744, CVE-2017-6247, CVE-2017-6248, CVE-2017-6249, CVE-2017-6258

''BlueBorne'' vulnerabilities:Remote execution: CVE-2017-0781, CVE-2017-0782

Man-in-the-middle: CVE-2017-0783

Information disclosure: CVE-2017-0785 ''KRACK'' vulnerabilities: Escalation of privileges or information disclosure: CVE-2017-13077, CVE-2017-13078, CVE-2017-13079, CVE-2017-13080, CVE-2017-13081, CVE-2017-13082, CVE-2017-13086, CVE-2017-13087, CVE-2017-13088
30 Nov 201730 Nov 2017
4579Security Bulletin: NVIDIA Shield TV contains updates for ''KRACK'' vulnerabilitiesMedium''KRACK'' Vulnerabilities: Escalation of Privileges or Information Disclosure: CVE-2017-13077, CVE-2017-13078, CVE-2017-13079, CVE-2017-13080, CVE-2017-13081, CVE-2017-13082, CVE-2017-13086, CVE-2017-13087, CVE-2017-130801 Nov 201701 Nov 2017
4561Security Bulletin: NVIDIA Tegra Jetson L4T contains multiple vulnerabilities; updates for ''BlueBorne'' and ''Dnsmasq''MediumDenial of service or escalation of privileges: CVE-2016-8482, CVE-2017-0307, CVE-2016-6777, CVE-2016-0834, CVE-2016-6775, CVE-2016-3815, CVE-2016-6776, CVE-2016-3847, CVE-2017-0428, CVE-2016-8424, CVE-2016-8425, CVE-2017-0331, CVE-2016-8430, CVE-2016-8428, CVE-2016-8427, CVE-2017-6273, CVE-2016-8395, CVE-2016-6789, CVE-2016-8400, CVE-2016-8449, CVE-2017-0332, CVE-2016-3930 Denial of service: CVE-2017-0306, CVE-2016-3814, CVE-2017-0326, CVE-2016-6915, CVE-2016-6916, CVE-2016-6917, CVE-2017-0327, CVE-2016-2491, CVE-2016-3793, CVE-2016-8426, CVE-2016-8429

Escalation of privileges: CVE-2017-0429, CVE-2016-2434, CVE-2016-3873, CVE-2017-0325

Information disclosure: CVE-2016-8397

''BlueBorne'' Linux vulnerabilities:Remote execution: CVE-2017-0781, CVE-2017-0782

Man-in-the-middle: CVE-2017-0783

Information disclosure: CVE-2017-0785

''Dnsmasq'' Linux vulnerabilities:Denial of service: CVE-2017-14491, CVE-2017-14492, CVE-2017-14493, CVE-2017-14495, CVE-2017-14496

Information Disclosure: CVE-2017-14494
16 Oct 201717 Oct 2017
4560Security Bulletin: NVIDIA installer contains a vulnerability in NVISystemService64 affecting GFEMediumDenial of service or escalation of privileges: CVE-2017-031616 Oct 201716 Oct 2017
4549Security Bulletin: NVIDIA Shield TV contains multiple vulnerabilities; update on ''BlueBorne''MediumDenial of service or possible escalation of privileges: CVE-2017-6247, CVE-2017-6248, CVE-2017-6249, CVE-2017-6258

Denial of service: CVE-2017-0326

''BlueBorne'' Android™ vulnerabilities:Remote execution: CVE-2017-0781, CVE-2017-0782

Man-in-the-middle: CVE-2017-0783

Information disclosure: CVE-2017-0785
05 Oct 201705 Oct 2017
4548Security Bulletin: NVIDIA Shield TV and Tablet contain multiple vulnerabilitiesMediumDenial of service or escalation of privileges: CVE-2016-6777, CVE-2016-6776, CVE-2016-8482, CVE-2017-0428

Denial of service: CVE-2016-6790, CVE-2016-6775, CVE-2016-2491, CVE-2016-6747

Escalation of privileges: CVE-2016-6789

Information disclosure: CVE-2016-8397
27 Sep 201727 Sep 2017
4544Security Bulletin: NVIDIA GPU contains multiple vulnerabilities in the kernel mode layer handlerMediumDenial of service or escalation of privileges: CVE-2017-6268, CVE-2017-6269, CVE-2017-6277, CVE-2017-6272

Denial of service: CVE-2017-6266, CVE-2017-6267, CVE-2017-6270, CVE-2017-6271
21 Sep 201725 Sep 2017
4525Security Bulletin: NVIDIA GPU contains multiple vulnerabilities in the kernel mode layer handlerMediumDenial of Service or Escalation of Privileges: CVE-2017-6252, CVE-2017-6253, CVE-2017-6254, CVE-2017-6255, CVE-2017-6256, CVE-2017-6257

Denial of Service: CVE-2017-6259, CVE-2017-6260

Escalation of Privileges: CVE-2017-6251
24 Sep 201725 Sep 2017
4490Security Bulletin: NVIDIA Shield TV and Tablet contain multiple vulnerabilitiesMediumDenial of Service or Escalation of Privileges: CVE-2016-8400, CVE-2017-0331, CVE-2016-8395, CVE-2016-8424, CVE-2016-8425, CVE-2016-8427, CVE-2016-8428, CVE-2016-8430, CVE-2016-8429, CVE-2016-8449

Escalation of Privileges: CVE-2017-0429

Information Disclosure: CVE-2016-8460, CVE-2017-0448
14 Jun 201722 Jun 2017
4462Security Bulletin: NVIDIA GPU Display driver contains multiple vulnerabilities in the kernel mode layer handlerMediumDenial of service or Escalation of Privileges: CVE-2017-0341, CVE-2017-0342, CVE-2017-0343, CVE-2017-0345, CVE-2017-0346, CVE-2017-0347, CVE-2017-0348, CVE-2017-0349, CVE-2017-0351

Denial of Service: CVE-2017-0350, CVE-2017-0353, CVE-2017-0354, CVE-2017-0355

Escalation of Privileges: CVE-2017-0344, CVE-2017-0352
09 May 201725 May 2017
4459Security Bulletin: NVIDIA GeForce Experience contains a vulnerability in NVIDIA Web Helper.exe (repackaged Node.js)MediumBypass of Application Whitelisting: CVE-2017-625027 Apr 201727 Apr 2017
4456Security Notice: Bypass Application Whitelisting through NVIDIA node.jsMediumBypass of Application Whitelisting: CVE-2017-625021 Apr 201727 Apr 2017
4398Security Bulletin: NVIDIA GPU Display Driver contains multiple vulnerabilities in the kernel mode layer handlerMediumDenial of Service or Escalation of Privileges: CVE-2017-0308, CVE-2017-0309, CVE-2017-0311, CVE-2017-0312, CVE-2017-0313, CVE-2017-0314, CVE-2017-0315, CVE-2017-0321, CVE-2017-0322, CVE-2017-0323, CVE-2017-0324

Denial of Service: CVE-2017-0310, CVE-2017-0318, CVE-2017-0319, CVE-2017-0320

Escalation of Privileges: CVE-2017-0317
14 Feb 201730 May 2017
4279Security Bulletin: Vulnerability in NVIDIA Web Helper.exe affects NVIDIA GeForce Experience (CVE-2016-8827)MediumInformation Disclosure: CVE-2016-882714 Dec 201614 Dec 2016
4278Security Bulletin: NVIDIA Windows GPU Display Driver contains multiple vulnerabilities in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape and Linux GPU Display Driver contains a vulnerability in the kernel mode layer (nvidia.ko)MediumDenial of Service or Escalation of Privileges: CVE-2016-8822, CVE-2016-8823, CVE-2016-8825

Denial of Service: CVE-2016-8826

Escalation of Privileges: CVE-2016-8824, CVE-2016-8821
14 Feb 201609 MAr 2017
4276Security Bulletin: NVIDIA Shield contains multiple vulnerabilities in nvhost_job.cMediumDenial of Service: CVE-2016-6915, CVE-2016-6916, CVE-2016-691709 Dec 201609 Dec 2016
4267Security Bulletin: NVIDIA Shield contains multiple vulnerabilities in Mediaserver and KernelMediumEscalation of Privileges: CVE-2016-3847, CVE-2016-3873, CVE-2016-3933, CVE-2016-3930, CVE-2016-3844, CVE-2016-3848, CVE-2016-3793

Information Disclosure: CVE-2016-3815, CVE-2016-6677, CVE-2016-6686, CVE-2016-6687, CVE-2016-6688
30 Nov 201605 Dec 2016
4257Security Bulletin: NVIDIA Windows GPU Display Driver contains multiple vulnerabilities in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscapeMediumDenial of Service or Escalation of Privileges: CVE-2016-8813, CVE-2016-8814, CVE-2016-8815, CVE-2016-8816, CVE-2016-8817, CVE-2016-8818, CVE-2016-8819 Denial of Service or Information Disclosure: CVE-2016-882018 Nov 201609 Mar 2017
4246Security Bulletin: NVIDIA Linux GPU Display Driver contains missing permissions check and improper validation vulnerabilitiesMediumEscalation of Privileges: CVE-2016-7382 and CVE-2016-7389 28 Oct 201609 Mar 2017
4247Security Bulletin: NVIDIA Windows GPU Display Driver contains multiple vulnerabilities in the kernel mode layer (nvlddmkm.sys) handlerMediumDenial of Service or Escalation of Privileges: CVE-2016-8805, CVE-2016-8806, CVE-2016-8807, CVE-2016-8808, CVE-2016-8809, CVE-2016-8810, CVE-2016-8811, CVE-2016-7391, CVE-2016-7387, CVE-2016-7385, CVE-2016-7390, CVE-2016-7384, CVE-2016-7388, CVE-2016-7381, CVE-2016-7383

Escalation of Privileges: CVE-2016-7382

Information Disclosure: CVE-2016-7386
28 Oct 201609 Mar 2017
4247NVIDIA GeForce Experience contains a vulnerability in the kernel mode layer (nvstreamkms.sys)MediumDenial of Service or Escalation of Privileges: CVE-2016-881228 Oct 201609 Mar 2017
4213Security Bulletin: Multiple vulnerabilities affect Quadro, NVS, and GeForce Windows based systemsMediumDenial of Service: CVE-2016-4959, CVE-2016-4961, CVE-2016-5025

Denial of Service or Escalation of Privileges: CVE-2016-3161, CVE-2016-5852

Escalation of Privileges: CVE-2016-4960
19 Aug 201619 Aug 2016
4208Security Bulletin: Tegra Linux Kernel Driver vulnerabilitiesMediumEscalation of Privileges: CVE-2016-2434, CVE-2016-2435, CVE-2016-2436, CVE-2016-2437, CVE-2016-2445, CVE-2016-2446, CVE-2016-2490 CVE-2016-249102 Aug 201602 Aug 2016
4059Security Bulletin: CVE-2016-2556: Kernel driver escape can allow access to restricted functionalityMediumDenial of Service or Escalation of Privilege: CVE-2016-255621 Mar 201621 Mar 2016
4060Security Bulletin: CVE-2016-2557: Kernel driver escape privileged memory accessMediumDenial of Service, Escalation of Privileges or Information Disclosure: CVE-2016-255721 Mar 201621 Mar 2016
4061Security Bulletin: CVE-2016-2558: Kernel driver escape allows untrusted pointerMediumDenial of Service, Escalation of Privileges or Information Disclosure: CVE-2016-255821 Mar 201621 Mar 2016
3810Security Bulletin: Google Android Stagefright multimedia vulnerabilitiesMediumDenial of Service or Escalation of Privileges: CVE-2015-1538, CVE-2015-1539, CVE-2015-3824, CVE-2015-3826,CVE-2015-3827, CVE-2015-3828,CVE-2015-3829, CVE-2015-386420 Nov 201520 Nov 2015
3806Security Bulletin: CVE-2015-7866: NVIDIA control panel unquoted pathMediumEscalation of Privileges: CVE-2015-786618 Nov 201518 Nov 2015
3807Security Bulletin: CVE-2015-7865: Stereoscopic 3D Driver service arbitrary run key creationMediumEscalation of Privileges: CVE-2015-786518 Nov 201518 Nov 2015
3808Security Bulletin: CVE-2015-7869: Unsanitized user mode inputMediumDenial of Service, Escalation of Privileges, or Information Disclosure: CVE-2015-786918 Nov 201518 Nov 2015
3809Security Bulletin: Microsoft Detours security updateMediumEscalation of Privileges: No CVE18 Nov 201518 Nov 2015
3802Security Bulletin: CVE-2015-5053: GPU mappings of third-party device IO memoryMediumEscalation of Privileges: CVE-2015-505309 Nov 201509 Nov 2015
3763Security Bulletin: CVE-2015-5950 Memory corruption due to an unsanitized pointer in the NVIDIA display driverMediumEscalation of Privileges: CVE-2015-595025 Sep 201525 Sep 2015
3693Security Bulletin: CVE-2015-3625: Privilege Escalation via Unsanitized pointer dereference in NVIDIA FreeBSD Kernel DriverMediumEscalation of Privileges: CVE-2015-362519 Jun 201519 Jun 2015
4386Security Bulletin: Vulnerabilities in Bash affect NVIDIA Tegra Linux L4TMediumDenial of Service: CVE-2014-6271, CVE-2014-7169, CVE-2014-7186, CVE-2014-7187, CVE-2014-6277, CVE-2014-627803 Mar 201503 Feb 2017
3634Security Bulletin: CVE-2015-1170: Windows privilege impersonation checkMediumEscalation of Privileges: CVE-2015-117002 Mar 201502 Mar 2015
3618Security Bulletin: CVE-2014-5332: Tegra Linux Kernel NVMap vulnerabilityMediumEscalation of Privileges: CVE-2014-533215 Jan 201515 Jan 2015
3610Security Bulletin: CVE-2014-8298: GLX-INDIRECT (Including CVE-2014-8093, CVE-2014-8098)MediumDenial of Service or Escalation of Privileges: CVE-2014-8298, CVE-2014-8093, CVE-2014-809809 Dec 201409 Dec 2014
3566Security Bulletin: CVE-2014-0224: GameStream OpenSSL VulnerabilityMediumDenial of Service, Escalation of Privileges or Information Disclosure: CVE-2014-022409 Sep 201409 Sep 2014
3492Security Bulletin: CVE-2014-0160: Gamestream OpenSSL VulnerabilityMediumInformation Disclosure: CVE-2014-016029 Apr 201429 Apr 2014
3377Security Bulletin: CVE-2013-5987: Unprivileged GPU access vulnerabilityMediumDenial of Service, Escalation of Privileges or Information Disclosure: CVE-2013-598702 Dec 201302 Dec 2013
3290Security Bulletin: CVE-2013-0131: NVIDIA UNIX GPU Driver ARGB cursor buffer overflow in ''NoScanout'' modeMediumDenial of Service: CVE-2013-013102 Apr 201302 Apr 2013
3288Security Bulletin: CVE-2013-0109 NVIDIA Display Driver service vulnerabilityMediumEscalation of Privileges: CVE-2013-0109, CVE-2013-0110, CVE-2013-011122 Feb 201322 Feb 2013
3288Security Bulletin: CVE-2013-0110 NVIDIA Stereoscopic 3D Driver service vulnerabilityMediumEscalation of Privileges: CVE-2013-0109, CVE-2013-0110, CVE-2013-011122 Feb 201322 Feb 2013
3288Security Bulletin: CVE-2013-0111 NVIDIA update service daemon vulnerabilityMediumEscalation of Privileges: CVE-2013-0109, CVE-2013-0110, CVE-2013-011122 Feb 201322 Feb 2013
3140Security Bulletin: CVE-2012-4225 NVIDIA UNIX graphics driver VulnerabilityMediumEscalation of Privileges: CVE-2012-422502 Oct 201320 Feb 2013
3109Security Bulletin: Security vulnerability CVE-2012-0946 in the NVIDIA UNIX driverMediumEscalation of Privileges: CVE-2012-0946 04 Apr 201206 Aug 2012
1971Security Bulletin: CVE-2013-5987: Unprivileged GPU access vulnerabilityMediumEscalation of Privileges: CVE-2006-537918 Oct 200620 Feb 2013
Select Location
Middle East