Vulnerabilities > Nvidia > GPU Display Driver > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-05-17 CVE-2022-28186 Improper Input Validation vulnerability in Nvidia GPU Display Driver and Virtual GPU
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where the product receives input or data, but does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly, which may lead to denial of service or data tampering.
local
low complexity
nvidia CWE-20
6.1
2022-05-17 CVE-2022-28187 Missing Release of Resource after Effective Lifetime vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where the memory management software does not release a resource after its effective lifetime has ended, which may lead to denial of service.
local
low complexity
nvidia CWE-772
5.5
2022-05-17 CVE-2022-28188 Improper Input Validation vulnerability in Nvidia GPU Display Driver and Virtual GPU
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where the product receives input or data, but does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly, which may lead to denial of service.
local
low complexity
nvidia CWE-20
5.5
2022-05-17 CVE-2022-28189 NULL Pointer Dereference vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where a NULL pointer dereference may lead to a system crash.
local
low complexity
nvidia CWE-476
5.5
2022-05-17 CVE-2022-28190 Improper Input Validation vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where improper input validation can cause denial of service.
local
low complexity
nvidia CWE-20
5.5
2022-02-07 CVE-2022-21813 Improper Handling of Exceptional Conditions vulnerability in Nvidia products
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.
local
low complexity
nvidia CWE-755
6.1
2022-02-07 CVE-2022-21814 Improper Handling of Exceptional Conditions vulnerability in Nvidia products
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver package, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.
local
low complexity
nvidia CWE-755
6.1
2022-02-07 CVE-2022-21815 NULL Pointer Dereference vulnerability in Nvidia products
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for private IOCTLs where a NULL pointer dereference in the kernel, created within user mode code, may lead to a denial of service in the form of a system crash.
local
low complexity
nvidia CWE-476
5.5
2021-10-27 CVE-2021-1115 NULL Pointer Dereference vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for private IOCTLs, where an attacker with local unprivileged system access may cause a NULL pointer dereference, which may lead to denial of service in a component beyond the vulnerable component.
local
low complexity
nvidia CWE-476
6.5
2021-10-27 CVE-2021-1116 NULL Pointer Dereference vulnerability in Nvidia GPU Display Driver
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where a NULL pointer dereference in the kernel, created within user mode code, may lead to a denial of service in the form of a system crash.
local
low complexity
nvidia CWE-476
5.5