CVE-2011-0636

The (1) cudaHostAlloc and (2) cuMemHostAlloc functions in the NVIDIA CUDA Toolkit 3.2 developer drivers for Linux 260.19.26, and possibly other versions, do not initialize pinned memory, which allows local users to read potentially sensitive memory, such as file fragments during read or write operations.
References
Link Resource
http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7675-1380-00.htm
http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7676-1022+00.htm
http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7677-1391+00.htm
http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7681-487+00.htm
http://forums.nvidia.com/index.php?showtopic=190303
http://osvdb.org/70420
http://secunia.com/advisories/42859 Vendor Advisory
http://www.securityfocus.com/archive/1/515591/100/0/threaded
http://www.securityfocus.com/archive/1/516121/100/0/threaded
http://www.securityfocus.com/bid/45717
http://www.securitytracker.com/id?1024962
https://exchange.xforce.ibmcloud.com/vulnerabilities/64710
http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7675-1380-00.htm
http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7676-1022+00.htm
http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7677-1391+00.htm
http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7681-487+00.htm
http://forums.nvidia.com/index.php?showtopic=190303
http://osvdb.org/70420
http://secunia.com/advisories/42859 Vendor Advisory
http://www.securityfocus.com/archive/1/515591/100/0/threaded
http://www.securityfocus.com/archive/1/516121/100/0/threaded
http://www.securityfocus.com/bid/45717
http://www.securitytracker.com/id?1024962
https://exchange.xforce.ibmcloud.com/vulnerabilities/64710
Configurations

Configuration 1 (hide)

cpe:2.3:a:nvidia:cuda_toolkit:3.2:*:*:*:*:*:*:*

History

21 Nov 2024, 01:24

Type Values Removed Values Added
References () http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7675-1380-00.htm - () http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7675-1380-00.htm -
References () http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7676-1022+00.htm - () http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7676-1022+00.htm -
References () http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7677-1391+00.htm - () http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7677-1391+00.htm -
References () http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7681-487+00.htm - () http://classic.chem.msu.su/cgi-bin/ceilidh.exe/gran/gamess/forum/?C35e9ea936bHW-7681-487+00.htm -
References () http://forums.nvidia.com/index.php?showtopic=190303 - () http://forums.nvidia.com/index.php?showtopic=190303 -
References () http://osvdb.org/70420 - () http://osvdb.org/70420 -
References () http://secunia.com/advisories/42859 - Vendor Advisory () http://secunia.com/advisories/42859 - Vendor Advisory
References () http://www.securityfocus.com/archive/1/515591/100/0/threaded - () http://www.securityfocus.com/archive/1/515591/100/0/threaded -
References () http://www.securityfocus.com/archive/1/516121/100/0/threaded - () http://www.securityfocus.com/archive/1/516121/100/0/threaded -
References () http://www.securityfocus.com/bid/45717 - () http://www.securityfocus.com/bid/45717 -
References () http://www.securitytracker.com/id?1024962 - () http://www.securitytracker.com/id?1024962 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/64710 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/64710 -

Information

Published : 2011-01-22 22:00

Updated : 2024-11-21 01:24


NVD link : CVE-2011-0636

Mitre link : CVE-2011-0636

CVE.ORG link : CVE-2011-0636


JSON object : View

Products Affected

nvidia

  • cuda_toolkit
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor