CVE-2018-3979 describes a remote denial-of-service vulnerability in the Nouveau Display Driver, the default Nvidia driver for Ubuntu, specifically affecting Ubuntu 18.04 LTS. An attacker can trigger this by crafting a malicious website that, when visited, causes the GPU shader execution to lead to a denial-of-service without further user interaction. Rated Medium (CVSS 6.5), the vulnerability is network-exploitable with low complexity, impacting system availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
18.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:nvidia:geforce_gtx_745_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:nvidia:geforce_gtx_750_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:nvidia:geforce_gtx_750_ti_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:nvidia:geforce_gtx_840m_firmware:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.