NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where an unprivileged regular user can cause exposure of sensitive information to an actor that is not explicitly authorized to have access to that information, which may lead to limited information disclosure.
References
Link | Resource |
---|---|
https://nvidia.custhelp.com/app/answers/detail/a_id/5415 | Vendor Advisory |
https://nvidia.custhelp.com/app/answers/detail/a_id/5415 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
History
21 Nov 2024, 07:24
Type | Values Removed | Values Added |
---|---|---|
References | () https://nvidia.custhelp.com/app/answers/detail/a_id/5415 - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
Information
Published : 2022-12-30 23:15
Updated : 2024-11-21 07:24
NVD link : CVE-2022-42266
Mitre link : CVE-2022-42266
CVE.ORG link : CVE-2022-42266
JSON object : View
Products Affected
nvidia
- cloud_gaming
- virtual_gpu
microsoft
- windows
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor