CVE-2022-28192
CVE-2022-28192
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 4.1EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
17 may 2022Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where it may lead to a use-after-free, which in turn may cause denial of service. This attack is complex to carry out because the attacker needs to have control over freeing some host side resources out of sequence, which requires elevated privileges.
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H
Productos afectados
NVIDIA · NVIDIA Virtual GPU Software and NVIDIA Cloud Gaming¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →