CVE-2022-28181
published 2022-05-17CVE-2022-28181: NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network can cause…
PriorityP350critical9.9CVSS 3.1
AVNACLPRLUINSCCHIHAH
EPSS
1.05%
60.6th percentile
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network can cause an out-of-bounds write through a specially crafted shader, which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. The scope of the impact may extend to other components.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nvidia-graphics-drivers | < nvidia-graphics-drivers 470.129.06-1 (bookworm) | nvidia-graphics-drivers 470.129.06-1 (bookworm) |
| debian | nvidia-graphics-drivers-legacy-340xx | < nvidia-graphics-drivers 470.129.06-1 (bookworm) | nvidia-graphics-drivers 470.129.06-1 (bookworm) |
| debian | nvidia-graphics-drivers-legacy-390xx | < nvidia-graphics-drivers 470.129.06-1 (bookworm) | nvidia-graphics-drivers 470.129.06-1 (bookworm) |
| debian | nvidia-graphics-drivers-tesla-418 | < nvidia-graphics-drivers 470.129.06-1 (bookworm) | nvidia-graphics-drivers 470.129.06-1 (bookworm) |
| debian | nvidia-graphics-drivers-tesla-450 | < nvidia-graphics-drivers 470.129.06-1 (bookworm) | nvidia-graphics-drivers 470.129.06-1 (bookworm) |
| debian | nvidia-graphics-drivers-tesla-460 | < nvidia-graphics-drivers 470.129.06-1 (bookworm) | nvidia-graphics-drivers 470.129.06-1 (bookworm) |
| debian | nvidia-graphics-drivers-tesla-470 | < nvidia-graphics-drivers 470.129.06-1 (bookworm) | nvidia-graphics-drivers 470.129.06-1 (bookworm) |
| nvidia | nvidia_gpu_display_driver | — | — |
| nvidia | virtual_gpu | — | — |
| nvidia | virtual_gpu | >= 11.0 < 11.8 | 11.8 |
| nvidia | virtual_gpu | >= 13.0 < 13.3 | 13.3 |
CVSS provenance
nvdv3.19.9CRITICALCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
osv9.9CRITICAL
vendor_debian8.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rcc4-c7gp-64w8: NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network c
ghsa_unreviewed·2022-05-18
CVE-2022-28181 [HIGH] CWE-787 GHSA-rcc4-c7gp-64w8: NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network c
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network can cause an out-of-bounds write through a specially crafted shader, which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. The scope of the impact may extend to other components.
OSV
CVE-2022-28181: NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network c
osv·2022-05-17·CVSS 9.9
CVE-2022-28181 [CRITICAL] CVE-2022-28181: NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network c
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network can cause an out-of-bounds write through a specially crafted shader, which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. The scope of the impact may extend to other components.
Debian
CVE-2022-28181: nvidia-graphics-drivers - NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the ...
vendor_debian·2022·CVSS 8.5
CVE-2022-28181 [HIGH] CVE-2022-28181: nvidia-graphics-drivers - NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the ...
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network can cause an out-of-bounds write through a specially crafted shader, which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. The scope of the impact may extend to other components.
Scope: local
bookworm: resolved (fixed in 470.129.06-1)
bullseye: resolved (fixed in 470.129.06-5~deb11u1)
forky: resolved (fixed in 470.129.06-1)
sid: resolved (fixed in 470.129.06-1)
trixie: resolved (fixed in 470.129.06-1)
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Multiple memory corruption vulnerabilities in NVIDIA GPU driver
blogs_talos·2022-05-17·CVSS 8.5
[HIGH] Vulnerability Spotlight: Multiple memory corruption vulnerabilities in NVIDIA GPU driver
## Vulnerability Spotlight: Multiple memory corruption vulnerabilities in NVIDIA GPU driver
Piotr Bania of Cisco Talos discovered these vulnerabilities.
Cisco Talos recently discovered four vulnerabilities in the NVIDIA D3D10 driver for graphics cards that could allow an attacker to corrupt memory and write arbitrary memory on the card.
NVIDIA graphics drivers are software for NVIDIA Graphics GPU cards that are installed on PCs. The D3D10 driver communicates between the operating system and the GPU. It's required in most cases for the PC to function properly.
An attacker could exploit these vulnerabilities by sending the target a specially crafted executable or shader file.
These issues could also allow an adversary to perform a guest-to-host escape if they target a guest machine runn
Talos
Vulnerability Spotlight: Multiple memory corruption vulnerabilities in NVIDIA GPU driver
blogs_talos·2022-05-17·CVSS 8.5
[HIGH] Vulnerability Spotlight: Multiple memory corruption vulnerabilities in NVIDIA GPU driver
Piotr Bania of Cisco Talos discovered these vulnerabilities.
Cisco Talos recently discovered four vulnerabilities in the NVIDIA D3D10 driver for graphics cards that could allow an attacker to corrupt memory and write arbitrary memory on the card.
NVIDIA graphics drivers are software for NVIDIA Graphics GPU cards that are installed on PCs. The D3D10 driver communicates between the operating system and the GPU. It's required in most cases for the PC to function properly.
An attacker could exploit these vulnerabilities by sending the target a specially crafted executable or shader file.
These issues could also allow an adversary to perform a guest-to-host escape if they target a guest machine running virtualization environments. We specifically tested these issues with a HYPER-V guest usi
2022-05-17
Published