Executive Summary

Informations
Name CVE-2012-0946 First vendor Publication 2012-04-22
Vendor Cve Last vendor Modification 2012-12-18

Security-Database Scoring CVSS v2

Cvss vector : (AV:L/AC:L/Au:N/C:P/I:P/A:P)
Cvss Base Score 4.6 Attack Range Local
Cvss Impact Score 6.4 Attack Complexity Low
Cvss Expoit Score 3.9 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

The NVIDIA UNIX driver before 295.40 allows local users to access arbitrary memory locations by leveraging GPU device-node read/write privileges.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-0946

CWE : Common Weakness Enumeration

idName
CWE-264Permissions, Privileges, and Access Controls

OVAL Definitions

Definition Id: oval:org.mitre.oval:def:17959
 
Oval ID: oval:org.mitre.oval:def:17959
Title: USN-1420-1 -- nvidia-graphics-drivers, nvidia-graphics-drivers-173, nvidia-graphics-drivers-173-updates, nvidia-graphics-drivers-updates vulnerability
Description: NVIDIA graphics drivers could be made to run programs as an administrator.
Family: unix Class: patch
Reference(s): USN-1420-1
CVE-2012-0946
Version: 8
Platform(s): Ubuntu 11.10
Ubuntu 11.04
Ubuntu 10.04
Product(s): nvidia-graphics-drivers
nvidia-graphics-drivers-173
nvidia-graphics-drivers-173-updates
nvidia-graphics-drivers-updates
Definition Synopsis:

CPE : Common Platform Enumeration

TypeDescriptionCount
Application1

OpenVAS Exploits

DateDescription
2012-08-10Name : Gentoo Security Advisory GLSA 201206-19 (nvidia-drivers)
File : nvt/glsa_201206_19.nasl
2012-05-31Name : FreeBSD Ports: nvidia-driver
File : nvt/freebsd_nvidia-driver0.nasl
2012-04-13Name : Ubuntu Update for nvidia-graphics-drivers USN-1420-1
File : nvt/gb_ubuntu_USN_1420_1.nasl

Nessus® Vulnerability Scanner

DateDescription
2013-09-04Name : The remote Amazon Linux AMI host is missing a security update.
File : ala_ALAS-2012-67.nasl - Type : ACT_GATHER_INFO
2012-06-25Name : The remote Gentoo host is missing one or more security-related patches.
File : gentoo_GLSA-201206-19.nasl - Type : ACT_GATHER_INFO
2012-05-14Name : The remote FreeBSD host is missing one or more security-related updates.
File : freebsd_pkg_b91234e79a8b11e1b666001636d274f3.nasl - Type : ACT_GATHER_INFO
2012-04-12Name : The remote Ubuntu host is missing one or more security-related patches.
File : ubuntu_USN-1420-1.nasl - Type : ACT_GATHER_INFO

Internal Sources (Detail)

SourceUrl
CONFIRM http://nvidia.custhelp.com/app/answers/detail/a_id/3109
SECUNIA http://secunia.com/advisories/48793
UBUNTU http://www.ubuntu.com/usn/usn-1420-1/

Alert History

If you want to see full details history, please login or register.
0
1
2
DateInformations
2014-02-17 11:08:32
  • Multiple Updates
2013-05-10 22:34:18
  • Multiple Updates
2012-12-19 13:24:54
  • Multiple Updates