Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-28192

Опубликовано: 17 мая 2022
Источник: debian
EPSS Низкий

Описание

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where it may lead to a use-after-free, which in turn may cause denial of service. This attack is complex to carry out because the attacker needs to have control over freeing some host side resources out of sequence, which requires elevated privileges.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
nvidia-graphics-driversfixed470.129.06-1package
nvidia-graphics-driversfixed470.129.06-5~deb11u1bullseyepackage
nvidia-graphics-driversignoredbusterpackage
nvidia-graphics-drivers-tesla-418unfixedpackage
nvidia-graphics-drivers-tesla-418ignoredbullseyepackage
nvidia-graphics-drivers-tesla-450fixed450.191.01-1package
nvidia-graphics-drivers-tesla-450fixed450.191.01-1~deb11u1bullseyepackage
nvidia-graphics-drivers-tesla-460unfixedpackage
nvidia-graphics-drivers-tesla-460no-dsabullseyepackage
nvidia-graphics-drivers-tesla-470fixed470.129.06-1package
nvidia-graphics-drivers-tesla-470no-dsabullseyepackage
nvidia-graphics-drivers-tesla-510fixed510.73.08-1experimentalpackage
nvidia-graphics-drivers-tesla-510fixed510.73.08-2package

Примечания

  • https://nvidia.custhelp.com/app/answers/detail/a_id/5353

EPSS

Процентиль: 26%
0.00092
Низкий

Связанные уязвимости

CVSS3: 4.1
ubuntu
больше 3 лет назад

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where it may lead to a use-after-free, which in turn may cause denial of service. This attack is complex to carry out because the attacker needs to have control over freeing some host side resources out of sequence, which requires elevated privileges.

CVSS3: 4.1
nvd
больше 3 лет назад

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where it may lead to a use-after-free, which in turn may cause denial of service. This attack is complex to carry out because the attacker needs to have control over freeing some host side resources out of sequence, which requires elevated privileges.

CVSS3: 4.1
github
больше 3 лет назад

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where it may lead to a use-after-free, which in turn may cause denial of service. This attack is complex to carry out because the attacker needs to have control over freeing some host side resources out of sequence, which requires elevated privileges.

CVSS3: 4.1
fstec
почти 4 года назад

Уязвимость модуля nvidia.ko компонента NVIDIA Virtual GPU Manager драйвера виртуальных графических процессоров NVIDIA Virtual GPU, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 26%
0.00092
Низкий