CVE-2022-42266

NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where an unprivileged regular user can cause exposure of sensitive information to an actor that is not explicitly authorized to have access to that information, which may lead to limited information disclosure.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:nvidia:virtual_gpu:*:*:*:*:*:*:*:*
cpe:2.3:a:nvidia:virtual_gpu:*:*:*:*:*:*:*:*
cpe:2.3:a:nvidia:virtual_gpu:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:a:nvidia:cloud_gaming:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:24

Type Values Removed Values Added
References () https://nvidia.custhelp.com/app/answers/detail/a_id/5415 - Vendor Advisory () https://nvidia.custhelp.com/app/answers/detail/a_id/5415 - Vendor Advisory
CVSS v2 : unknown
v3 : 3.3
v2 : unknown
v3 : 5.5

Information

Published : 2022-12-30 23:15

Updated : 2024-11-21 07:24


NVD link : CVE-2022-42266

Mitre link : CVE-2022-42266

CVE.ORG link : CVE-2022-42266


JSON object : View

Products Affected

nvidia

  • cloud_gaming
  • virtual_gpu

microsoft

  • windows
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor