CVE-2022-34667 — Stack-based Buffer Overflow in Nvidia Cuda Toolkit
Severity
4.4MEDIUMNVD
EPSS
0.3%
top 47.29%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 19
Description
NVIDIA CUDA Toolkit SDK contains a stack-based buffer overflow vulnerability in cuobjdump, where an unprivileged remote attacker could exploit this buffer overflow condition by persuading a local user to download a specially crafted corrupted file and execute cuobjdump against it locally, which may lead to a limited denial of service and some loss of data integrity for the local user.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:LExploitability: 1.8 | Impact: 2.5
Affected Packages2 packages
Patches
🔴Vulnerability Details
3GHSA▶
GHSA-v4g9-ch7r-4xp7: NVIDIA CUDA Toolkit SDK contains a stack-based buffer overflow vulnerability in cuobjdump, where an unprivileged remote attacker could exploit this bu↗2022-11-19
OSV▶
CVE-2022-34667: NVIDIA CUDA Toolkit SDK contains a stack-based buffer overflow vulnerability in cuobjdump, where an unprivileged remote attacker could exploit this bu↗2022-11-19
CVEList▶
CVE-2022-34667: NVIDIA CUDA Toolkit SDK contains a stack-based buffer overflow vulnerability in cuobjdump, where an unprivileged remote attacker could exploit this bu↗2022-11-18
📋Vendor Advisories
1Debian▶
CVE-2022-34667: nvidia-cuda-toolkit - NVIDIA CUDA Toolkit SDK contains a stack-based buffer overflow vulnerability in ...↗2022