Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

CVE-2022-31617

Published: 19 November 2022

NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where a local user with basic capabilities can cause an out-of-bounds read, which may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.

Notes

AuthorNote
sbeattie
windows drivers only
mdeslaur
some binary drivers are no longer support by NVidia, so they
are marked as ignored here

Priority

Medium

Cvss 3 Severity Score

7.8

Score breakdown

Status

Package Release Status
nvidia
Launchpad, Ubuntu, Debian
upstream Not vulnerable
(windows specific)
nvidia-graphics-drivers-304
Launchpad, Ubuntu, Debian
focal Does not exist

jammy Does not exist

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Ignored

bionic Does not exist

mantic Does not exist

nvidia-graphics-drivers-304-updates
Launchpad, Ubuntu, Debian
bionic Does not exist

focal Does not exist

jammy Does not exist

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Not vulnerable
(superseded)
mantic Does not exist

nvidia-graphics-drivers-340
Launchpad, Ubuntu, Debian
bionic Ignored

focal Ignored

jammy Not vulnerable
(superseded)
kinetic Not vulnerable
(superseded)
lunar Not vulnerable
(superseded)
trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Ignored

mantic Not vulnerable
(superseded)
nvidia-graphics-drivers-340-updates
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(superseded)
focal Does not exist

jammy Does not exist

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Not vulnerable
(superseded)
mantic Does not exist

nvidia-graphics-drivers-352
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(superseded)
focal Does not exist

jammy Does not exist

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Not vulnerable
(superseded)
mantic Does not exist

nvidia-graphics-drivers-352-updates
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(superseded)
focal Does not exist

jammy Does not exist

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Not vulnerable
(superseded)
mantic Does not exist

nvidia-graphics-drivers-361
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(superseded)
focal Does not exist

jammy Does not exist

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Not vulnerable
(superseded)
mantic Does not exist

nvidia-graphics-drivers-367
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(superseded)
focal Does not exist

jammy Does not exist

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Not vulnerable
(superseded)
mantic Does not exist

nvidia-graphics-drivers-375
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(superseded)
focal Does not exist

jammy Does not exist

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Not vulnerable
(superseded)
mantic Does not exist

nvidia-graphics-drivers-384
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(superseded)
focal Does not exist

jammy Does not exist

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Needs triage

mantic Does not exist

nvidia-graphics-drivers-390
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(windows specific)
focal Not vulnerable
(windows specific)
jammy Not vulnerable
(windows specific)
kinetic Not vulnerable
(windows specific)
lunar Not vulnerable
(windows specific)
trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Does not exist

nvidia-graphics-drivers-418-server
Launchpad, Ubuntu, Debian
bionic Ignored

focal Ignored

jammy Ignored

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Does not exist

nvidia-graphics-drivers-430
Launchpad, Ubuntu, Debian
bionic Ignored

focal Ignored

jammy Ignored

kinetic Ignored

lunar Ignored

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Ignored

nvidia-graphics-drivers-435
Launchpad, Ubuntu, Debian
bionic Ignored

focal Ignored

jammy Ignored

kinetic Ignored

lunar Ignored

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Ignored

nvidia-graphics-drivers-440
Launchpad, Ubuntu, Debian
bionic Ignored

focal Ignored

jammy Ignored

kinetic Ignored

lunar Ignored

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Ignored

nvidia-graphics-drivers-440-server
Launchpad, Ubuntu, Debian
bionic Ignored

focal Ignored

jammy Ignored

kinetic Ignored

lunar Ignored

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Does not exist

nvidia-graphics-drivers-450
Launchpad, Ubuntu, Debian
bionic Ignored

focal Ignored

jammy Ignored

kinetic Ignored

lunar Ignored

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Ignored

nvidia-graphics-drivers-450-server
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(windows specific)
focal Not vulnerable
(windows specific)
jammy Not vulnerable
(windows specific)
kinetic Not vulnerable
(windows specific)
lunar Not vulnerable
(windows specific)
trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Does not exist

nvidia-graphics-drivers-455
Launchpad, Ubuntu, Debian
bionic Ignored

focal Ignored

jammy Ignored

kinetic Ignored

lunar Ignored

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Ignored

nvidia-graphics-drivers-460
Launchpad, Ubuntu, Debian
bionic Ignored

focal Ignored

jammy Ignored

kinetic Ignored

lunar Ignored

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Ignored

nvidia-graphics-drivers-460-server
Launchpad, Ubuntu, Debian
bionic Ignored

focal Ignored

jammy Does not exist

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Does not exist

nvidia-graphics-drivers-470
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(windows specific)
focal Not vulnerable
(windows specific)
jammy Not vulnerable
(windows specific)
kinetic Not vulnerable
(windows specific)
lunar Not vulnerable
(windows specific)
trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Not vulnerable
(windows specific)
nvidia-graphics-drivers-470-server
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(windows specific)
focal Not vulnerable
(windows specific)
jammy Not vulnerable
(windows specific)
kinetic Not vulnerable
(windows specific)
lunar Not vulnerable
(windows specific)
trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Not vulnerable
(windows specific)
nvidia-graphics-drivers-495
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(superseded)
focal Not vulnerable
(superseded)
jammy Does not exist

kinetic Does not exist

lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Does not exist

nvidia-graphics-drivers-510
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(windows specific)
focal Not vulnerable
(windows specific)
jammy Not vulnerable
(windows specific)
kinetic Not vulnerable
(windows specific)
lunar Not vulnerable
(windows specific)
trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Not vulnerable
(windows specific)
nvidia-graphics-drivers-510-server
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(windows specific)
focal Not vulnerable
(windows specific)
jammy Not vulnerable
(windows specific)
kinetic Not vulnerable
(windows specific)
lunar Does not exist

trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Does not exist

nvidia-graphics-drivers-515
Launchpad, Ubuntu, Debian
focal Not vulnerable
(windows specific)
jammy Not vulnerable
(windows specific)
kinetic Not vulnerable
(windows specific)
lunar Not vulnerable
(windows specific)
trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

bionic Not vulnerable
(windows specific)
mantic Not vulnerable
(windows specific)
nvidia-graphics-drivers-515-server
Launchpad, Ubuntu, Debian
bionic Not vulnerable
(windows specific)
focal Not vulnerable
(windows specific)
jammy Not vulnerable
(windows specific)
kinetic Not vulnerable
(windows specific)
lunar Not vulnerable
(windows specific)
trusty Does not exist

upstream Not vulnerable
(windows specific)
xenial Does not exist

mantic Not vulnerable
(windows specific)

Severity score breakdown

Parameter Value
Base score 7.8
Attack vector Local
Attack complexity Low
Privileges required Low
User interaction None
Scope Unchanged
Confidentiality High
Integrity impact High
Availability impact High
Vector CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H