CVE-2006-5379
Summary
| CVE | CVE-2006-5379 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-10-18 04:06:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | The accelerated rendering functionality of NVIDIA Binary Graphics Driver (binary blob driver) For Linux v8774 and v8762, and probably on other operating systems, allows local and remote attackers to execute arbitrary code via a large width value in a font glyph, which can be used to overwrite arbitrary memory locations. |
Risk And Classification
Primary CVSS: v2.0 7.5 from [email protected]
AV:N/AC:L/Au:N/C:P/I:P/A:P
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Nvidia | Binary Graphics Driver | v8762 | All | linux | All |
| Application | Nvidia | Binary Graphics Driver | v8774 | All | linux | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| SecurityReason - Buffer Overflow in NVIDIA Binary Graphics Driver For Linux | af854a3a-2127-422b-91ae-364da2661108 | securityreason.com | |
| US-CERT Vulnerability Note VU#147252 | af854a3a-2127-422b-91ae-364da2661108 | www.kb.cert.org | US Government Resource |
| Ubuntu update for nvidia-glx - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| Gentoo Linux Documentation -- NVIDIA binary graphics driver: Privilege escalation vulnerability | af854a3a-2127-422b-91ae-364da2661108 | security.gentoo.org | |
| Rapid7 Security Advisory R7-0025: Buffer Overflow in NVIDIA Binary Graphics Driver For Linux | af854a3a-2127-422b-91ae-364da2661108 | www.rapid7.com | Vendor Advisory |
| Advisories | Mandriva | af854a3a-2127-422b-91ae-364da2661108 | www.mandriva.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| Sun Solaris NVIDIA Graphics Driver Buffer Overflow Vulnerability - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| usn/usn-377-1 - Ubuntu: Linux for human beings | af854a3a-2127-422b-91ae-364da2661108 | www.ubuntu.com | |
| Rapid7 Security Advisory R7-0025: Buffer Overflow in NVIDIA Binary Graphics Driver For Linux | af854a3a-2127-422b-91ae-364da2661108 | download2.rapid7.com | |
| Security Bulletin: CVE-2006-5379 NVIDIA UNIX graphics driver Vulnerability | NVIDIA | af854a3a-2127-422b-91ae-364da2661108 | nvidia.custhelp.com | |
| #102693: Security Vulnerability With Graphics Driver for Solaris 10 and Linux on Certain Systems | af854a3a-2127-422b-91ae-364da2661108 | sunsolve.sun.com | |
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| NVIDIA Binary Graphics Driver for Linux Buffer Overflow Vulnerability - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| Mandriva update for nvidia - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| SecurityTracker.com Archives - NVIDIA Binary Graphics Driver for Linux Buffer Overflow Lets Local Users Gain Root Privileges | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | |
| download2.rapid7.com/r7-0025/nv_exploit.c | af854a3a-2127-422b-91ae-364da2661108 | download2.rapid7.com | Exploit |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| Gentoo update for nvidia-drivers - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| NVidia Binary Graphics Driver For Linux Buffer Overflow Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.