CVE-2022-28181

HIGH

NVIDIA GPU Display Driver - Out-of-bounds Write via Specially Crafted Shader

Title source: llm
STIX 2.1

Description

NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network can cause an out-of-bounds write through a specially crafted shader, which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. The scope of the impact may extend to other components.

References (2)

Core 2
Core References
Third Party Advisory vendor-advisory
https://security.gentoo.org/glsa/202310-02

Scores

CVSS v3 8.5
EPSS 0.0117
EPSS Percentile 78.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

Details

CWE
CWE-787
Status published
Products (3)
nvidia/gpu_display_driver (2 CPE variants)
nvidia/virtual_gpu 14.0
nvidia/virtual_gpu 11.0 - 11.8
Published May 17, 2022
Tracked Since Feb 18, 2026