CVE-2022-28182: High severity nvidia gpu display driver vulnerability
NVIDIA GPU Display Driver for Windows contains a vulnerability in the DirectX11 user mode driver (nvwgf2um/x.dll), where an unauthorized attacker on the network can cause an out-of-bounds write through a specially crafted shader, which may lead to code execution to cause denial of service, escalation of privileges, information disclosure, and data tampering. The scope of the impact may extend to other components.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2022-28182?
CVE-2022-28182 is a vulnerability in the NVIDIA GPU Display Driver for Windows, specifically in the DirectX11 user mode driver (nvwgf2um/x.dll).
What is the severity of CVE-2022-28182?
The severity of CVE-2022-28182 is high, with a CVSS score of 8.5.
How does CVE-2022-28182 impact the affected software?
CVE-2022-28182 allows an unauthorized attacker on the network to cause an out-of-bounds write in the NVIDIA GPU Display Driver, potentially leading to code execution, denial of service, or escalation of privileges.
Which software versions are affected by CVE-2022-28182?
NVIDIA GPU Display Driver for Windows versions, NVIDIA Virtual GPU versions 11.0 to 11.8 and 13.0 to 13.3, and NVIDIA Virtual GPU version 14.0 are affected by CVE-2022-28182.
How can I fix CVE-2022-28182?
To mitigate CVE-2022-28182, it is recommended to update to the latest version of the NVIDIA GPU Display Driver for Windows and NVIDIA Virtual GPU.