Name | CVE-2022-28191 |
Description | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where uncontrolled resource consumption can be triggered by an unprivileged regular user, which may lead to denial of service. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
Debian Bugs | 1011140, 1011145, 1011146, 1011147 |
The table below lists information on source packages.
Source Package | Release | Version | Status |
---|---|---|---|
nvidia-graphics-drivers (PTS) | bullseye/non-free | 470.256.02-2 | fixed |
bookworm/non-free-firmware | 535.183.01-1~deb12u1 | fixed | |
sid/non-free-firmware, trixie/non-free-firmware | 535.183.06-2 | fixed | |
nvidia-graphics-drivers-tesla-460 (PTS) | bullseye/non-free | 460.106.00-17~deb11u1 | vulnerable |
sid/non-free | 460.106.00-18 | vulnerable | |
nvidia-graphics-drivers-tesla-470 (PTS) | bullseye/non-free | 470.256.02-1~deb11u2 | fixed |
bookworm/non-free | 470.256.02-1~deb12u1 | fixed | |
trixie/non-free, sid/non-free | 470.256.02-4 | fixed |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
nvidia-graphics-drivers | source | bullseye | 470.129.06-5~deb11u1 | |||
nvidia-graphics-drivers | source | (unstable) | 470.129.06-1 | 1011140 | ||
nvidia-graphics-drivers-tesla-460 | source | (unstable) | (unfixed) | 1011145 | ||
nvidia-graphics-drivers-tesla-470 | source | (unstable) | 470.129.06-1 | 1011146 | ||
nvidia-graphics-drivers-tesla-510 | source | experimental | 510.73.08-1 | |||
nvidia-graphics-drivers-tesla-510 | source | (unstable) | 510.73.08-2 | 1011147 |
[buster] - nvidia-graphics-drivers <ignored> (Non-free not supported)
[bullseye] - nvidia-graphics-drivers-tesla-460 <no-dsa> (Non-free not supported)
[bullseye] - nvidia-graphics-drivers-tesla-470 <no-dsa> (Non-free not supported)
https://nvidia.custhelp.com/app/answers/detail/a_id/5353