CVE-2022-21821
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
NVIDIA CUDA Toolkit SDK contains an integer overflow vulnerability in cuobjdump.To exploit this vulnerability, a remote attacker would require a local user to download a specially crafted, corrupted file and locally execute cuobjdump against the file. Such an attack may lead to remote code execution that causes complete denial of service and an impact on data confidentiality and integrity.
NVIDIA CUDA Toolkit SDK contiene una vulnerabilidad de desbordamiento de enteros en cuobjdump.Para explotar esta vulnerabilidad, un atacante remoto requeriría que un usuario local descargara un archivo especialmente diseñado y corrupto y ejecutara localmente cuobjdump contra el archivo. Este ataque puede conllevar a una ejecución de código remota que cause una denegación de servicio completa y un impacto en la confidencialidad e integridad de los datos
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-12-10 CVE Reserved
- 2022-03-29 CVE Published
- 2024-08-03 CVE Updated
- 2024-11-02 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-190: Integer Overflow or Wraparound
- CWE-1285: Improper Validation of Specified Index, Position, or Offset in Input
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://nvidia.custhelp.com/app/answers/detail/a_id/5334 | 2022-04-08 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Nvidia Search vendor "Nvidia" | Cuda Toolkit Search vendor "Nvidia" for product "Cuda Toolkit" | < 11.6.2 Search vendor "Nvidia" for product "Cuda Toolkit" and version " < 11.6.2" | - |
Affected
| in | Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | - | - |
Safe
|
Nvidia Search vendor "Nvidia" | Cuda Toolkit Search vendor "Nvidia" for product "Cuda Toolkit" | < 11.6.2 Search vendor "Nvidia" for product "Cuda Toolkit" and version " < 11.6.2" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|