CVE-2022-34670

HIGH

Nvidia Gpu Display Driver < 390.157 - Denial of Service

Title source: rule
STIX 2.1

Description

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where an unprivileged regular user can cause truncation errors when casting a primitive to a primitive of smaller size causes data to be lost in the conversion, which may lead to denial of service or information disclosure.

Scores

CVSS v3 7.8
EPSS 0.0011
EPSS Percentile 29.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-681 CWE-197
Status published
Products (4)
debian/debian_linux 10.0
nvidia/cloud_gaming < 525.60.11
nvidia/gpu_display_driver 390 - 390.157
nvidia/virtual_gpu < 11.11
Published Dec 30, 2022
Tracked Since Feb 18, 2026