CVE-2022-42261
Summary
| CVE | CVE-2022-42261 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-12-30 23:15:00 UTC |
| Updated | 2023-10-19 01:33:00 UTC |
| Description | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where an input index is not validated, which may lead to buffer overrun, which in turn may cause data tampering, information disclosure, or denial of service. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| NVIDIA Drivers: Multiple Vulnerabilities (GLSA 202310-02) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| Security Bulletin: NVIDIA GPU Display Driver - November 2022 | NVIDIA |
MISC |
nvidia.custhelp.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 181270 Debian Security Update for nvidia-graphics-drivers-tesla-460 (CVE-2022-42261)
- 6140282 AWS Bottlerocket Security Update for kmod-nvidia (GHSA-6g8m-r562-w7q7)
- 710762 Gentoo Linux NVIDIA Drivers Multiple Vulnerabilities (GLSA 202310-02)