Local User Vulnerability in NVIDIA GPU Display Driver for Windows and Linux
CVE-2022-34665
6.5MEDIUM
Key Information:
- Vendor
- Nvidia
- Vendor
- CVE Published:
- 19 November 2022
Summary
The NVIDIA GPU Display Driver for both Windows and Linux contains a vulnerability in the kernel mode layer. An attacker with local access and basic user permissions can exploit this flaw, resulting in a null-pointer dereference. This exploitation could lead to a denial of service, affecting the normal operation of the affected systems.
Affected Version(s)
NVIDIA Cloud Gaming (guest driver), NVIDIA Cloud Gaming (Virtual GPU Manager) All versions prior to the August 2022 release
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved