CVE-2015-8328

CVSS V2 Medium 6.6 CVSS V3 None
Description
Unspecified vulnerability in the NVAPI support layer in the NVIDIA GPU graphics driver R340 before 341.92, R352 before 354.35, and R358 before 358.87 on Windows allows local users to obtain sensitive information, cause a denial of service (crash), or possibly gain privileges via unknown vectors. NOTE: this identifier was SPLIT from CVE-2015-7869 per ADT2 and ADT3 due to different vulnerability types and affected versions.
Overview
  • CVE ID
  • CVE-2015-8328
  • Assigner
  • cve@mitre.org
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2015-11-24T20:59:23
  • Last Modified Date
  • 2019-02-14T19:25:27
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
AND
cpe:2.3:a:nvidia:gpu_driver:*:*:*:*:*:*:*:* 1 OR 340 341.92
cpe:2.3:a:nvidia:gpu_driver:*:*:*:*:*:*:*:* 1 OR 352 354.35
cpe:2.3:a:nvidia:gpu_driver:*:*:*:*:*:*:*:* 1 OR 358 358.87
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:* 0 OR
CVSS Version 2
  • Version
  • 2.0
  • Vector String
  • AV:L/AC:M/Au:N/C:C/I:P/A:C
  • Access Vector
  • LOCAL
  • Access Compatibility
  • MEDIUM
  • Authentication
  • NONE
  • Confidentiality Impact
  • COMPLETE
  • Integrity Impact
  • PARTIAL
  • Availability Impact
  • COMPLETE
  • Base Score
  • 6.6
  • Severity
  • MEDIUM
  • Exploitability Score
  • 3.4
  • Impact Score
  • 9.5
References
Reference URL Reference Tags
http://www.securitytracker.com/id/1034176 Third Party Advisory VDB Entry
http://nvidia.custhelp.com/app/answers/detail/a_id/3808/kw/security Vendor Advisory
History
Created Old Value New Value Data Type Notes
2022-05-10 07:58:39 Added to TrackCVE
2022-12-02 07:18:37 2015-11-24T20:59Z 2015-11-24T20:59:23 CVE Published Date updated
2022-12-02 07:18:37 2019-02-14T19:25:27 CVE Modified Date updated
2022-12-02 07:18:37 Analyzed Vulnerability Status updated