CVE-2022-28198

MEDIUM

NVIDIA Omniverse - RCE

Title source: llm

Description

NVIDIA Omniverse Nucleus and Cache contain a vulnerability in its configuration of OpenSSL, where an attacker with physical access to the system can cause arbitrary code execution which can impact confidentiality, integrity, and availability.

Scores

CVSS v3 6.6
EPSS 0.0007
EPSS Percentile 20.6%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-706
Status published

Affected Products (2)

nvidia/omniverse_cache
nvidia/omniverse_nucleus

Timeline

Published Apr 29, 2022
Tracked Since Feb 18, 2026