Lucene search

K
ubuntucveUbuntu.comUB:CVE-2022-42265
HistoryDec 30, 2022 - 12:00 a.m.

CVE-2022-42265

2022-12-3000:00:00
ubuntu.com
ubuntu.com
28
nvidia gpu display driver
linux
kernel mode vulnerability
information disclosure
data tampering
integer overflow

7.1 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

0.0004 Low

EPSS

Percentile

9.0%

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel
mode layer (nvidia.ko), where an integer overflow may lead to information
disclosure or data tampering.

Notes

Author Note
mdeslaur some binary drivers are no longer support by NVidia, so they are marked as ignored here

7.1 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

0.0004 Low

EPSS

Percentile

9.0%