CVE-2021-1053

Publication date 7 January 2021

Last updated 25 August 2025


Ubuntu priority

Cvss 3 Severity Score

5.5 · Medium

Score breakdown

Description

NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape or IOCTL in which improper validation of a user pointer may lead to denial of service.

From the Ubuntu Security Team

It was discovered that the NVIDIA GPU display driver for the Linux kernel did not properly validate a pointer received from userspace in some situations. A local attacker could use this to cause a denial of service.

Read the notes from the security team

Status

Package Ubuntu Release Status
nvidia-graphics-drivers-455 20.10 groovy Ignored end of life
20.04 LTS focal Ignored end of standard support, was ignored [not available]
18.04 LTS bionic Ignored end of standard support
16.04 LTS xenial Not in release
14.04 LTS trusty Not in release
nvidia-graphics-drivers-440-server 20.10 groovy Ignored end of life
20.04 LTS focal Ignored end of standard support, was ignored [superseded by 450-server]
18.04 LTS bionic Ignored end of standard support
16.04 LTS xenial Not in release
14.04 LTS trusty Not in release
nvidia-graphics-drivers-390 20.10 groovy
Not affected
20.04 LTS focal
Not affected
18.04 LTS bionic
Not affected
16.04 LTS xenial Not in release
14.04 LTS trusty Not in release
nvidia-graphics-drivers-418-server 20.10 groovy
Fixed 418.181.07-0ubuntu0.20.10.1
20.04 LTS focal
Fixed 418.181.07-0ubuntu0.20.04.1
18.04 LTS bionic
Fixed 418.181.07-0ubuntu0.18.04.1
16.04 LTS xenial Not in release
14.04 LTS trusty Not in release
nvidia-graphics-drivers-450 20.10 groovy
Fixed 450.102.04-0ubuntu0.20.10.1
20.04 LTS focal
Fixed 450.102.04-0ubuntu0.20.04.1
18.04 LTS bionic
Fixed 450.102.04-0ubuntu0.18.04.1
16.04 LTS xenial Not in release
14.04 LTS trusty Not in release
nvidia-graphics-drivers-450-server 20.10 groovy
Fixed 450.102.04-0ubuntu0.20.10.1
20.04 LTS focal
Fixed 450.102.04-0ubuntu0.20.04.1
18.04 LTS bionic
Fixed 450.102.04-0ubuntu0.18.04.1
16.04 LTS xenial Not in release
14.04 LTS trusty Not in release
nvidia-graphics-drivers-460 20.10 groovy
Fixed 460.32.03-0ubuntu0.20.10.1
20.04 LTS focal
Fixed 460.32.03-0ubuntu0.20.04.1
18.04 LTS bionic
Fixed 460.32.03-0ubuntu0.18.04.1
16.04 LTS xenial Not in release
14.04 LTS trusty Not in release

Notes


alexmurray

CVE-2021-1052 and CVE-2021-1053 affect the following NVIDIA driver series: 450, 455, 418-server, 440-server, 450-server


sbeattie

Does not affect 390 series drivers.


sbeattie

NVIDIA series 455 are superseded by the 460 series. NVIDIA series 440-server are superseded by the 450-server series.

Severity score breakdown

CVSS version: CVSS v3.0

Base score 5.5 · Medium

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

References

Related Ubuntu Security Notices (USN)

    • USN-4689-1
    • NVIDIA graphics drivers vulnerabilities
    • 11 January 2021
    • USN-4689-2
    • Linux kernel vulnerabilities
    • 11 January 2021
    • USN-4689-3
    • NVIDIA graphics drivers vulnerabilities
    • 20 January 2021

Other references


Access our resources on patching vulnerabilities