CVE-2015-8328
Last modified
CVE-2015-8328 is a vulnerability of currently unknown severity. Unspecified vulnerability in the NVAPI support layer in the NVIDIA GPU graphics driver R340 before 341.92, R352 before 354.35, and R358 before 358.87 on Windows allows local users to obtain sensitive information, cause a denial of service (crash), or possibly gain privileges via unknown vectors. NOTE: this identifier was SPLIT from CVE-2015-7869 per ADT2 and ADT3 due to different vulnerability types and affected versions.. EPSS estimates a 0.38% chance of exploitation in the next 30 days.
Description
Unspecified vulnerability in the NVAPI support layer in the NVIDIA GPU graphics driver R340 before 341.92, R352 before 354.35, and R358 before 358.87 on Windows allows local users to obtain sensitive information, cause a denial of service (crash), or possibly gain privileges via unknown vectors. NOTE: this identifier was SPLIT from CVE-2015-7869 per ADT2 and ADT3 due to different vulnerability types and affected versions.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Nvidia | Gpu Driver | >= 340, < 341.92 |
| Nvidia | Gpu Driver | >= 352, <= 354.35 |
| Nvidia | Gpu Driver | >= 358, <= 358.87 |
References
- http://www.securitytracker.com/id/1034176Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1034176Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-8328?
How severe is CVE-2015-8328?
How do I fix CVE-2015-8328?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2015
- CVE-2015-8320Apache Cordova-Android before 3.7.0 improperly generates ran…
- CVE-2015-8322NetApp OnCommand System Manager 8.3.x before 8.3.2 allows re…
- CVE-2015-8324The ext4 implementation in the Linux kernel before 2.6.34 do…
- CVE-2015-8325The do_setup_env function in session.c in sshd in OpenSSH th…7.8
- CVE-2015-8326The IPTables-Parse module before 1.6 for Perl allows local u…
- CVE-2015-8327Incomplete blacklist vulnerability in util.c in foomatic-rip…
- CVE-2015-8329SAP Manufacturing Integration and Intelligence (aka MII, for…
- CVE-2015-8330The PCo agent in SAP Plant Connectivity (PCo) allows remote …
- CVE-2015-8331The Operation and Maintenance Unit (OMU) in Huawei VCN500 wi…
- CVE-2015-8332Huawei Video Content Management (VCM) before V100R001C10SPC0…
- CVE-2015-8333The Operation and Maintenance Unit (OMU) in Huawei VCN500 wi…
- CVE-2015-8334SQL injection vulnerability in the Operation and Maintenance…
Are you affected by CVE-2015-8328?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
