CVE-2022-21814

MEDIUM

NVIDIA GPU Display Driver for Linux - Denial of Service via Improper Permission Handling

Title source: llm
STIX 2.1

Description

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver package, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.

References (2)

Core 2
Core References
Third Party Advisory vendor-advisory
https://security.gentoo.org/glsa/202310-02

Scores

CVSS v3 6.1
EPSS 0.0023
EPSS Percentile 13.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H

Details

CWE
CWE-755 CWE-280
Status published
Products (6)
nvidia/geforce
nvidia/gpu_display_driver
nvidia/nvs
nvidia/quadro
nvidia/rtx
nvidia/tesla
Published Feb 07, 2022
Tracked Since Feb 18, 2026