CVE-2022-42262
Summary
| CVE | CVE-2022-42262 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-12-30 23:15:00 UTC |
| Updated | 2023-01-11 20:22:00 UTC |
| Description | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where an input index is not validated, which may lead to buffer overrun, which in turn may cause data tampering, information disclosure, or denial of service. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Security Bulletin: NVIDIA GPU Display Driver - November 2022 | NVIDIA |
MISC |
nvidia.custhelp.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 181279 Debian Security Update for nvidia-graphics-drivers-tesla-460 (CVE-2022-42262)
- 6140225 AWS Bottlerocket Security Update for kmod-nvidia (GHSA-92h9-33qp-hmgp)