First published: Fri Dec 30 2022(Updated: )
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where an integer truncation can lead to an out-of-bounds read, which may lead to denial of service.
Credit: psirt@nvidia.com psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nvidia Gpu Display Driver | >=390<390.157 | |
Nvidia Gpu Display Driver | >=470<470.161.03 | |
Nvidia Gpu Display Driver | >=510<510.108.03 | |
Nvidia Gpu Display Driver | >=515<515.86.01 | |
Nvidia Gpu Display Driver | >=525<525.60.11 | |
Nvidia Geforce | ||
Nvidia Nvs | ||
Nvidia Quadro | ||
Nvidia Rtx | ||
Nvidia Gpu Display Driver | >=450<450.216.04 | |
Nvidia Tesla | ||
Nvidia Cloud Gaming | <525.60.12 | |
Citrix Hypervisor | ||
Redhat Enterprise Linux Kernel-based Virtual Machine | ||
NVIDIA Virtual GPU | <11.11 | |
NVIDIA Virtual GPU | >=12.0<13.6 | |
NVIDIA Virtual GPU | >=14.0<14.4 | |
Linux Linux kernel | ||
VMware vSphere | ||
Nvidia Cloud Gaming | <525.60.11 | |
Debian Debian Linux | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this NVIDIA GPU Display Driver for Linux vulnerability is CVE-2022-34680.
The severity level of CVE-2022-34680 is medium with a CVSS score of 5.5.
The affected software for CVE-2022-34680 is the NVIDIA GPU Display Driver for Linux.
The vulnerability in the NVIDIA GPU Display Driver for Linux can be exploited through an integer truncation that leads to an out-of-bounds read, potentially causing a denial-of-service.
Yes, NVIDIA has released fixes and patches for the vulnerability. Please refer to the references provided for more information.