CVE-2023-31016 Vulnerability Details

  /     /     /  

CVE-2023-31016 Metadata Quick Info

CVE Published: 02/11/2023 | CVE Updated: 06/09/2024 | CVE Year: 2023
Source: nvidia | Vendor: nvidia | Product: NVIDIA GPU Display driver, vGPU driver, and Cloud gaming driver
Status : PUBLISHED

CVE-2023-31016 Description

NVIDIA GPU Display Driver for Windows contains a vulnerability where an uncontrolled search path element may allow an attacker to execute arbitrary code, which may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.

Metrics

CVSS Version: 3.1 | Base Score: 7.3 HIGH
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID: CWE-427
CWE Name: CWE-427
Source: nvidia

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description: Code execution, denial of service, escalation of privileges, information disclosure, data tampering


Source: NVD (National Vulnerability Database).