Skip to main content
  1. Home
  2. Computing
  3. Gaming
  4. News

An Nvidia vulnerability has been found. It’s time to update your drivers

Add as a preferred source on Google
Nvidia RTX 2060 Super and RTX 2070 Super review
Dan Baker/Digital Trends

Just this month, Nvidia posted a security bulletin on its site alerting consumers that GPUs in its GeForce, Quadro, and Tesla product lines were all affected by serious vulnerabilities. The vulnerabilities range in severity, but get as dangerous as local code execution and privilege escalation, and can be found in all versions of numerous driver tracks that the company provides for its hardware.

Notably, this includes the R430 line that powers the GeForce GPUs. While Nvidia has since issued new patched versions of all of its GeForce and many of its Quadro drivers, patches for some of its Quadro and Tesla drivers have not been released, and in some cases won’t be ready for two weeks.

Recommended Videos

The revelation of these substantial security flaws comes at an exceptionally awkward time for the GPU manufacturer, as it has just released its GeForce RTX Super line of graphics cards to capitalize on the post-E3 gaming excitement. Considering that concern for local privilege escalation vulnerabilities is often taken less seriously than more menacing remote code execution vulnerabilities due to the comparatively limited attack vector, gamers may not think to download and install a patch to their freshly purchased RTX Super GPU.

These security holes also coincide with a recent disappointing showing against AMD. After AMD successfully tricked Nvidia into sabotaging its own RTX Super release with a less-than-competitive price point, marketing gleaming new GPUs with high-severity vulnerabilities right out of the gate surely feels like getting salt in its wound.

One saving grace for Nvidia is that some hardware manufacturers may bundle the driver update as part of larger system updates, but users should definitely not count on this.

As things currently stand, a local code execution bug combined with a privilege execution bug can leave unpatched devices open to physical attacks in which a malicious actor gains physical access to a device to give themselves administrator privileges and run arbitrary code. This kind of attack is not out of the question, as many of the devices containing vulnerable Nvidia graphics cards are used by creatives who may or may not have robust security models, or may be using publicly accessible devices like those in libraries or gaming lounges. Regardless, any consumer with affected hardware should download and run the patch installers Nvidia has provided (or will soon provide, for those that are not yet available) as soon as possible.

Jonathan Terrasi
Former Digital Trends Contributor
Jonathan has studiously followed trends in technology, particularly in information security and digital privacy, since 2014…
New open-weight AI from China is toppling the best of OpenAI and Claude Fable
Moonshot’s 2.8-trillion-parameter Kimi K3 beats Fable 5 and GPT 5.6 Sol in select benchmarks
Art, Drawing, Plant

China's Moonshot AI has launched Kimi K3, a massive 2.8-trillion-parameter model built for coding, research, reasoning, and visual tasks. Moonshot admits K3 still trails Claude Fable 5 and GPT 5.6 Sol overall. Even so, its benchmark results put it surprisingly close to both, and it finishes ahead in several tests.

How close is Kimi K3 to the best closed models?

Read more
Gemini could finally let you choose how friendly it sounds
Finally, you can stop Gemini from sounding like your HR manager
Google Gemini

Google has spent the past few months making Gemini sound more natural, expressive, and conversational. Now, it appears the company is preparing to give users far more control over how the AI speaks.

Code spotted by Android Authority's APK Insights - the latest beta version of the Google app suggests Gemini may soon allow users to customise its voice across four separate parameters: Energy, Formality, Warmth, and Speed. Instead of choosing from a fixed list of personalities, users could tweak these characteristics to create a voice that better suits their preferences.

Read more
ChatGPT will now remind teens to take breaks and give parents more controls
New parental controls include Quiet Hours, Study Mode defaults, and alerts for serious account violations.
chatgpt-teen-safety-features

OpenAI wants to make ChatGPT safer for teens, and the changes go well beyond a simple content filter. In a new update, the company laid out its stance on why teens should have access to AI in the first place, arguing that keeping them away from it entirely would leave them unprepared for one of the defining technologies of their generation.

Nearly 90% of teens already use ChatGPT weekly for learning, research, or getting organized, which is why OpenAI says access needs to come paired with real protections built for their age.

Read more