CVE-2022-21820

NVIDIA DCGM contains a vulnerability in nvhostengine, where a network user can cause detection of error conditions without action, which may lead to limited code execution, some denial of service, escalation of privileges, and limited impacts to both data confidentiality and integrity.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:nvidia:data_center_gpu_manager:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

History

21 Nov 2024, 06:45

Type Values Removed Values Added
References () http://packetstormsecurity.com/files/167396/NVIDIA-Data-Center-GPU-Manager-Remote-Memory-Corruption.html - Exploit, Third Party Advisory, VDB Entry () http://packetstormsecurity.com/files/167396/NVIDIA-Data-Center-GPU-Manager-Remote-Memory-Corruption.html - Exploit, Third Party Advisory, VDB Entry
References () https://nvidia.custhelp.com/app/answers/detail/a_id/5328 - Patch, Vendor Advisory () https://nvidia.custhelp.com/app/answers/detail/a_id/5328 - Patch, Vendor Advisory

24 Jul 2023, 13:46

Type Values Removed Values Added
CWE CWE-20 CWE-755
CWE-787

Information

Published : 2022-03-24 17:15

Updated : 2024-11-21 06:45


NVD link : CVE-2022-21820

Mitre link : CVE-2022-21820

CVE.ORG link : CVE-2022-21820


JSON object : View

Products Affected

nvidia

  • data_center_gpu_manager

linux

  • linux_kernel
CWE
CWE-20

Improper Input Validation

CWE-755

Improper Handling of Exceptional Conditions

CWE-787

Out-of-bounds Write