← Back

CVE-2022-42262

nvd nist
Published: Dec 30, 2022Modified: Jun 17, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where an input index is not validated, which may lead to buffer overrun, which in turn may cause data tampering, information disclosure, or denial of service.

Affected (7)

3 products
Virtual Gpu
Cloud Gaming
Gpu Display Driver
Configuration A
3 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
Nvidia
Before 11.11
From 12.0 to 13.6
From 14.0 to 14.4
Running on/withPlatform Versions
Linux
Linux Kernel
All versions
Vmware
Vsphere
All versions
Configuration B
1 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
Before 525.60.12
Running on/withPlatform Versions
Citrix
Hypervisor
All versions
Redhat
Enterprise Linux Kernel Based Virtual Machine
All versions
Configuration C
4 platform
Running on/withPlatform Versions
Nvidia
Geforce
All versions
Nvidia
Nvs
All versions
Nvidia
Quadro
All versions
Nvidia
Rtx
All versions
Configuration D
3 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Nvidia
From 450 to 450.216.04
From 470 to 470.161.03
From 510 to 510.108.03
Running on/withPlatform Versions
Nvidia
Tesla
All versions

References (2)

Source: psirt@nvidia.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.