PT-2022-22280 · Nvidia+1 · Nvidia Cuda Toolkit+1

Hjy79425575

·

Published

2022-11-18

·

Updated

2022-11-29

·

CVE-2022-34667

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions NVIDIA CUDA Toolkit SDK (affected versions not specified)
Description The issue is a stack-based buffer overflow in cuobjdump. An unprivileged remote attacker could exploit this condition by persuading a local user to download a specially crafted corrupted file and execute cuobjdump against it locally. This may lead to a limited denial of service and some loss of data integrity for the local user.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Memory Corruption

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2022-34667

Affected Products

Debian
Nvidia Cuda Toolkit