NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where a local user with basic capabilities can cause an out-of-bounds read, which may lead to a system crash or a leak of internal kernel information.
                
            References
                    | Link | Resource | 
|---|---|
| https://nvidia.custhelp.com/app/answers/detail/a_id/5383 | Patch Vendor Advisory | 
| https://nvidia.custhelp.com/app/answers/detail/a_id/5383 | Patch Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
Configuration 2 (hide)
| AND | 
 
 | 
Configuration 3 (hide)
| AND | 
 
 | 
Configuration 4 (hide)
| AND | 
 
 | 
Configuration 5 (hide)
| AND | 
 
 | 
Configuration 6 (hide)
| AND | 
 
 | 
History
                    21 Nov 2024, 07:04
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://nvidia.custhelp.com/app/answers/detail/a_id/5383 - Patch, Vendor Advisory | 
28 Nov 2022, 20:37
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:a:nvidia:cloud_gaming_guest:*:*:*:*:*:*:*:* cpe:2.3:a:nvidia:studio:-:*:*:*:*:*:*:* cpe:2.3:a:nvidia:virtual_gpu:14.0:*:*:*:*:*:*:* cpe:2.3:a:nvidia:virtual_gpu:*:*:*:*:*:*:*:* cpe:2.3:h:nvidia:tesla:-:*:*:*:*:*:*:* cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:windows:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* cpe:2.3:h:nvidia:geforce:-:*:*:*:*:*:*:* | |
| CWE | CWE-125 | |
| CVSS | v2 : v3 : | v2 : unknown v3 : 7.1 | 
| References | (MISC) https://nvidia.custhelp.com/app/answers/detail/a_id/5383 - Patch, Vendor Advisory | 
20 Nov 2022, 02:44
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2022-11-19 00:15
Updated : 2024-11-21 07:04
NVD link : CVE-2022-31612
Mitre link : CVE-2022-31612
CVE.ORG link : CVE-2022-31612
JSON object : View
Products Affected
                nvidia
- cloud_gaming_guest
- studio
- gpu_display_driver
- geforce
- virtual_gpu
- tesla
microsoft
- windows
CWE
                
                    
                        
                        CWE-125
                        
            Out-of-bounds Read
