Vulnerabilities > Nvidia > GPU Display Driver

DATE CVE VULNERABILITY TITLE RISK
2022-05-17 CVE-2022-28182 Out-of-bounds Write vulnerability in Nvidia GPU Display Driver and Virtual GPU
NVIDIA GPU Display Driver for Windows contains a vulnerability in the DirectX11 user mode driver (nvwgf2um/x.dll), where an unauthorized attacker on the network can cause an out-of-bounds write through a specially crafted shader, which may lead to code execution to cause denial of service, escalation of privileges, information disclosure, and data tampering.
network
high complexity
nvidia CWE-787
8.5
2022-05-17 CVE-2022-28183 Out-of-bounds Read vulnerability in Nvidia GPU Display Driver and Virtual GPU
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user can cause an out-of-bounds read, which may lead to denial of service and information disclosure.
local
low complexity
nvidia CWE-125
7.1
2022-05-17 CVE-2022-28184 Unspecified vulnerability in Nvidia GPU Display Driver and Virtual GPU
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where an unprivileged regular user can access administrator- privileged registers, which may lead to denial of service, information disclosure, and data tampering.
local
low complexity
nvidia
7.8
2022-05-17 CVE-2022-28186 Improper Input Validation vulnerability in Nvidia GPU Display Driver and Virtual GPU
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where the product receives input or data, but does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly, which may lead to denial of service or data tampering.
local
low complexity
nvidia CWE-20
6.1
2022-05-17 CVE-2022-28187 Missing Release of Resource after Effective Lifetime vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where the memory management software does not release a resource after its effective lifetime has ended, which may lead to denial of service.
local
low complexity
nvidia CWE-772
5.5
2022-05-17 CVE-2022-28188 Improper Input Validation vulnerability in Nvidia GPU Display Driver and Virtual GPU
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where the product receives input or data, but does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly, which may lead to denial of service.
local
low complexity
nvidia CWE-20
5.5
2022-05-17 CVE-2022-28189 NULL Pointer Dereference vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where a NULL pointer dereference may lead to a system crash.
local
low complexity
nvidia CWE-476
5.5
2022-05-17 CVE-2022-28190 Improper Input Validation vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where improper input validation can cause denial of service.
local
low complexity
nvidia CWE-20
5.5
2022-02-07 CVE-2022-21813 Improper Handling of Exceptional Conditions vulnerability in Nvidia products
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.
local
low complexity
nvidia CWE-755
6.1
2022-02-07 CVE-2022-21814 Improper Handling of Exceptional Conditions vulnerability in Nvidia products
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver package, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.
local
low complexity
nvidia CWE-755
6.1