CVE-2022-31609
Published on: Not Yet Published
Last Modified on: 08/06/2022 02:35:00 AM UTC
Certain versions of NVIDIA Virtual GPU Software And NVIDIA Cloud Gaming from NVIDIA contain the following vulnerability:
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it allows the guest VM to allocate resources for which the guest is not authorized. This vulnerability may lead to loss of data integrity and confidentiality, denial of service, or information disclosure.
- CVE-2022-31609 has been assigned by
[email protected] to track the vulnerability - currently rated as HIGH severity.
- Affected Vendor/Software:
NVIDIA - NVIDIA Virtual GPU Software and NVIDIA Cloud Gaming version vGPU version 14.x (prior to 14.2), version 13.x (prior to 13.4) and version 11.x (prior 11.9).
CVSS3 Score: 7.8 - HIGH
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
LOCAL | LOW | LOW | NONE |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | HIGH | HIGH | HIGH |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Security Bulletin: NVIDIA GPU Display Driver - August 2022 | NVIDIA | nvidia.custhelp.com text/html |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Software
Vendor | Product | Version |
---|---|---|
NVIDIA | NVIDIA_Virtual_GPU_Software_and_NVIDIA_Cloud_Gaming | vGPU version 14.x (prior to 14.2), version 13.x (prior to 13.4) and version 11.x (prior 11.9). |
No vendor comments have been submitted for this CVE
Social Mentions
Source | Title | Posted (UTC) |
---|---|---|
![]() |
CVE-2022-31609 : NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager vGPU plugin , where it a… twitter.com/i/web/status/1… | 2022-08-05 20:38:19 |