CVE-2022-21813
published 2022-02-07CVE-2022-21813: NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges may allow…
PriorityP425medium6.1CVSS 3.1
AVLACLPRLUINSUCNILAH
EPSS
0.23%
14.1th percentile
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nvidia-graphics-drivers | < nvidia-graphics-drivers 470.103.01-1 (bookworm) | nvidia-graphics-drivers 470.103.01-1 (bookworm) |
| debian | nvidia-graphics-drivers-tesla-470 | < nvidia-graphics-drivers 470.103.01-1 (bookworm) | nvidia-graphics-drivers 470.103.01-1 (bookworm) |
| nvidia | nvidia_gpu_display_driver | — | — |
CVSS provenance
nvdv3.16.1MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
nvdv2.03.6LOWAV:L/AC:L/Au:N/C:N/I:P/A:P
osv6.1MEDIUM
vendor_debian6.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
NVIDIA GPU Display Driver on Linux access control (EUVD-2022-26973)
vuldb·2026-04-28·CVSS 6.1
CVE-2022-21813 [MEDIUM] NVIDIA GPU Display Driver on Linux access control (EUVD-2022-26973)
A vulnerability was found in NVIDIA GPU Display Driver on Linux. It has been classified as critical. This issue affects some unknown processing. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2022-21813. It is possible to initiate the attack remotely. There is no exploit available.
GHSA
GHSA-j78x-pc9w-6w5v: NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges m
ghsa_unreviewed·2022-02-08
CVE-2022-21813 [MEDIUM] CWE-284 GHSA-j78x-pc9w-6w5v: NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges m
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.
OSV
CVE-2022-21813: NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges m
osv·2022-02-07·CVSS 6.1
CVE-2022-21813 [MEDIUM] CVE-2022-21813: NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges m
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.
Ubuntu
NVIDIA graphics drivers vulnerabilities
vendor_ubuntu·2022-02-08
CVE-2022-21813 NVIDIA graphics drivers vulnerabilities
Title: NVIDIA graphics drivers vulnerabilities
Summary: Several security issues were fixed in NVIDIA graphics drivers.
It was discovered that the NVIDIA graphics drivers incorrectly handled
permissions in the kernel mode layer. A local attacker could use this issue
to write to protected memory and cause a denial of service.
Instructions: After a standard system update you need to reboot your computer to make all
the necessary changes.
Debian
CVE-2022-21813: nvidia-graphics-drivers - NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel drive...
vendor_debian·2022·CVSS 6.1
CVE-2022-21813 [MEDIUM] CVE-2022-21813: nvidia-graphics-drivers - NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel drive...
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.
Scope: local
bookworm: resolved (fixed in 470.103.01-1)
bullseye: resolved (fixed in 470.129.06-5~deb11u1)
forky: resolved (fixed in 470.103.01-1)
sid: resolved (fixed in 470.103.01-1)
trixie: resolved (fixed in 470.103.01-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-02-07
Published