CVE-2022-42260: High severity nvidia virtual gpu graphics driver vulnerability
NVIDIA vGPU Display Driver for Linux guest contains a vulnerability in a D-Bus configuration file, where an unauthorized user in the guest VM can impact protected D-Bus endpoints, which may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-42260?
CVE-2022-42260 is a vulnerability in the NVIDIA vGPU Display Driver for Linux guest, where an unauthorized user in the guest VM can impact protected D-Bus endpoints, leading to various potential consequences.
What is the severity of CVE-2022-42260?
The severity of CVE-2022-42260 is high, with a CVSS score of 7.8.
How does CVE-2022-42260 affect NVIDIA Virtual GPU?
NVIDIA Virtual GPU versions up to and including 11.11 are affected by CVE-2022-42260.
How can CVE-2022-42260 be fixed?
To fix CVE-2022-42260, users should update their NVIDIA vGPU Display Driver for Linux guest to a non-vulnerable version.
Are Citrix Hypervisor and Linux kernel vulnerable to CVE-2022-42260?
No, Citrix Hypervisor and Linux kernel are not vulnerable to CVE-2022-42260.