CVE-2022-21813Improper Access Control in Nvidia GPU Display Driver

Severity
6.1MEDIUMNVD
EPSS
0.0%
top 86.14%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 7
Latest updateFeb 8

Description

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:HExploitability: 1.8 | Impact: 4.2

Affected Packages1 packages

CVEListV5nvidia/nvidia_gpu_display_driverAll GPU Driver versions for Linux

🔴Vulnerability Details

3
GHSA
GHSA-j78x-pc9w-6w5v: NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges m2022-02-08
CVEList
CVE-2022-21813: NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges m2022-02-07
OSV
CVE-2022-21813: NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges m2022-02-07

📋Vendor Advisories

2
Ubuntu
NVIDIA graphics drivers vulnerabilities2022-02-08
Debian
CVE-2022-21813: nvidia-graphics-drivers - NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel drive...2022
CVE-2022-21813 — Improper Access Control in Nvidia | cvebase