Lucene search

K
ubuntucveUbuntu.comUB:CVE-2022-21813
HistoryFeb 01, 2022 - 12:00 a.m.

CVE-2022-21813

2022-02-0100:00:00
ubuntu.com
ubuntu.com
33
nvidia gpu display driver
linux
kernel driver
local user
write access
protected memory
denial of service

CVSS2

3.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:P/A:P

CVSS3

6.1

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H

EPSS

0

Percentile

5.1%

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel
driver, where improper handling of insufficient permissions or privileges
may allow an unprivileged local user limited write access to protected
memory, which can lead to denial of service.

Bugs

Notes

Author Note
mdeslaur some binary drivers are no longer support by NVidia, so they are marked as ignored here

CVSS2

3.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:P/A:P

CVSS3

6.1

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H

EPSS

0

Percentile

5.1%