
CVE-2023-25515 – Gentoo Linux Security Advisory 202405-28
https://notcve.org/view.php?id=CVE-2023-25515
23 Jun 2023 — NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where unexpected untrusted data is parsed, which may lead to code execution, denial of service, escalation of privileges, data tampering, or information disclosure. Multiple vulnerabilities have been discovered in NVIDIA Drivers, the worst of which could result in root privilege escalation. Versions greater than or equal to 470.223.02 are affected. • https://https://nvidia.custhelp.com/app/answers/detail/a_id/5468 • CWE-822: Untrusted Pointer Dereference •

CVE-2023-0199 – Gentoo Linux Security Advisory 202310-02
https://notcve.org/view.php?id=CVE-2023-0199
22 Apr 2023 — NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler, where an out-of-bounds write can lead to denial of service and data tampering. Multiple vulnerabilities have been discovered in NVIDIA Drivers, the worst of which could result in root privilege escalation. Versions greater than or equal to 470.182.03 are affected. • https://nvidia.custhelp.com/app/answers/detail/a_id/5452 • CWE-787: Out-of-bounds Write •

CVE-2023-0190 – Gentoo Linux Security Advisory 202310-02
https://notcve.org/view.php?id=CVE-2023-0190
22 Apr 2023 — NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where a NULL pointer dereference may lead to denial of service. Multiple vulnerabilities have been discovered in NVIDIA Drivers, the worst of which could result in root privilege escalation. Versions greater than or equal to 470.182.03 are affected. • https://nvidia.custhelp.com/app/answers/detail/a_id/5452 • CWE-476: NULL Pointer Dereference •

CVE-2023-0184 – Gentoo Linux Security Advisory 202310-02
https://notcve.org/view.php?id=CVE-2023-0184
22 Apr 2023 — NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler which may lead to denial of service, escalation of privileges, information disclosure, and data tampering. Multiple vulnerabilities have been discovered in NVIDIA Drivers, the worst of which could result in root privilege escalation. Versions greater than or equal to 470.182.03 are affected. • https://nvidia.custhelp.com/app/answers/detail/a_id/5452 • CWE-822: Untrusted Pointer Dereference •

CVE-2022-34680 – Gentoo Linux Security Advisory 202310-02
https://notcve.org/view.php?id=CVE-2022-34680
30 Dec 2022 — NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where an integer truncation can lead to an out-of-bounds read, which may lead to denial of service. NVIDIA GPU Display Driver para Linux contiene una vulnerabilidad en el controlador de capa del modo kernel, donde un truncamiento de números enteros puede provocar una lectura fuera de los límites, lo que puede provocar una Denegación de Servicio (DoS). Multiple vulnerabilities have been discovered in NVIDIA Drivers... • https://lists.debian.org/debian-lts-announce/2023/05/msg00010.html • CWE-197: Numeric Truncation Error CWE-681: Incorrect Conversion between Numeric Types •

CVE-2022-42257 – Gentoo Linux Security Advisory 202310-02
https://notcve.org/view.php?id=CVE-2022-42257
30 Dec 2022 — NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow may lead to information disclosure, data tampering or denial of service. NVIDIA GPU Display Driver para Linux contiene una vulnerabilidad en la capa del modo kernel (nvidia.ko), donde un desbordamiento de enteros puede provocar la divulgación de información, la manipulación de datos o la Denegación de Servicio (DoS). Multiple vulnerabilities have been discovered in NVIDIA Drivers, the... • https://lists.debian.org/debian-lts-announce/2023/05/msg00010.html • CWE-190: Integer Overflow or Wraparound •

CVE-2022-42258 – Gentoo Linux Security Advisory 202310-02
https://notcve.org/view.php?id=CVE-2022-42258
30 Dec 2022 — NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow may lead to denial of service, data tampering, or information disclosure. NVIDIA GPU Display Driver para Linux contiene una vulnerabilidad en la capa del modo kernel (nvidia.ko), donde un desbordamiento de enteros puede provocar Denegación de Servicio (DoS), manipulación de datos o divulgación de información. Multiple vulnerabilities have been discovered in NVIDIA Drivers, the worst o... • https://lists.debian.org/debian-lts-announce/2023/05/msg00010.html • CWE-190: Integer Overflow or Wraparound •

CVE-2022-42259 – Gentoo Linux Security Advisory 202310-02
https://notcve.org/view.php?id=CVE-2022-42259
30 Dec 2022 — NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow may lead to denial of service. NVIDIA GPU Display Driver para Linux contiene una vulnerabilidad en la capa del modo kernel (nvidia.ko), donde un desbordamiento de enteros puede provocar una Denegación de Servicio (DoS). Multiple vulnerabilities have been discovered in NVIDIA Drivers, the worst of which could result in root privilege escalation. Versions greater than or equal to 470.18... • https://lists.debian.org/debian-lts-announce/2023/05/msg00010.html • CWE-190: Integer Overflow or Wraparound •

CVE-2022-42260 – Gentoo Linux Security Advisory 202310-02
https://notcve.org/view.php?id=CVE-2022-42260
30 Dec 2022 — NVIDIA vGPU Display Driver for Linux guest contains a vulnerability in a D-Bus configuration file, where an unauthorized user in the guest VM can impact protected D-Bus endpoints, which may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering. NVIDIA vGPU Display Driver para los invitados de Linux contiene una vulnerabilidad en un archivo de configuración de D-Bus, donde un usuario no autorizado en la máquina virtual invitada puede afectar los endpoi... • https://nvidia.custhelp.com/app/answers/detail/a_id/5415 • CWE-281: Improper Preservation of Permissions •

CVE-2022-42261 – Gentoo Linux Security Advisory 202310-02
https://notcve.org/view.php?id=CVE-2022-42261
30 Dec 2022 — NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where an input index is not validated, which may lead to buffer overrun, which in turn may cause data tampering, information disclosure, or denial of service. NVIDIA vGPU software contiene una vulnerabilidad en Virtual GPU Manager (complemento vGPU), donde un índice de entrada no se valida, lo que puede provocar una saturación del búfer, lo que a su vez puede causar manipulación de datos, divulgación de información o Den... • https://nvidia.custhelp.com/app/answers/detail/a_id/5415 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •