First published: Fri Dec 30 2022(Updated: )
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow may lead to information disclosure, data tampering or denial of service.
Credit: psirt@nvidia.com psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nvidia Gpu Display Driver | >=390<390.157 | |
Nvidia Gpu Display Driver | >=470<470.161.03 | |
Nvidia Gpu Display Driver | >=510<510.108.03 | |
Nvidia Gpu Display Driver | >=515<515.86.01 | |
Nvidia Gpu Display Driver | >=525<525.60.11 | |
Nvidia Geforce | ||
Nvidia Nvs | ||
Nvidia Quadro | ||
Nvidia Rtx | ||
Nvidia Gpu Display Driver | >=450<450.216.04 | |
Nvidia Tesla | ||
Nvidia Cloud Gaming | <525.60.12 | |
Citrix Hypervisor | ||
Redhat Enterprise Linux Kernel-based Virtual Machine | ||
NVIDIA Virtual GPU | <11.11 | |
NVIDIA Virtual GPU | >=12.0<13.6 | |
NVIDIA Virtual GPU | >=14.0<14.4 | |
Linux Linux kernel | ||
VMware vSphere | ||
Nvidia Cloud Gaming | <525.60.11 | |
Debian Debian Linux | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-42257 is a vulnerability in the NVIDIA GPU Display Driver for Linux that may lead to information disclosure, data tampering, or denial of service.
The NVIDIA GPU Display Driver for Linux versions 390 and above are affected by CVE-2022-42257.
CVE-2022-42257 has a severity rating of 7.3, which is considered high.
To fix CVE-2022-42257, users should update to the latest version of the NVIDIA GPU Display Driver for Linux.
More information about CVE-2022-42257 can be found in the references provided.