CVE-2024-0073 is a high-severity vulnerability affecting the NVIDIA GPU Display Driver for Windows, specifically within its kernel mode layer. The flaw allows the driver to operate at an unnecessarily high privilege level, potentially leading to code execution, denial of service, privilege escalation, information disclosure, and data tampering. With a CVSS score of 7.8, this vulnerability requires local access but has low attack complexity. Currently, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Nvidia | GPU Display Driver, VGPU Driver, Cloud Gaming Driver | All versions prior to and including 16.3, 13.9, and all versions prior to and including the January 2024 releaseCNA affecteddefault unaffected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.