Name | CVE-2015-5950 |
Description | The NVIDIA display driver R352 before 353.82 and R340 before 341.81 on Windows; R304 before 304.128, R340 before 340.93, and R352 before 352.41 on Linux; and R352 before 352.46 on GRID vGPU and vSGA allows local users to write to an arbitrary kernel memory location and consequently gain privileges via a crafted ioctl call. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub advisories/code/issues, web search, more) |
Debian Bugs | 800566 |
The table below lists information on source packages.
Source Package | Release | Version | Status |
---|---|---|---|
nvidia-graphics-drivers (PTS) | buster/non-free | 418.226.00-3 | fixed |
bullseye/non-free | 470.161.03-1 | fixed | |
bookworm/non-free-firmware | 525.89.02-1 | fixed | |
sid/non-free-firmware | 525.89.02-2 | fixed |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
nvidia-graphics-drivers | source | (unstable) | 340.93-1 | 800566 | ||
nvidia-graphics-drivers-legacy-304xx | source | jessie | 304.128-1 | |||
nvidia-graphics-drivers-legacy-304xx | source | (unstable) | 304.128-5 |
[jessie] - nvidia-graphics-drivers <no-dsa> (Non-free not supported)
[wheezy] - nvidia-graphics-drivers <no-dsa> (Non-free not supported)
[squeeze] - nvidia-graphics-drivers <no-dsa> (Non-free not supported)