UBUNTU-CVE-2022-21821

Source
https://ubuntu.com/security/CVE-2022-21821
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2022/UBUNTU-CVE-2022-21821.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2022-21821
Related
Published
2022-03-29T20:15:00Z
Modified
2025-06-03T17:39:12Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

NVIDIA CUDA Toolkit SDK contains an integer overflow vulnerability in cuobjdump.To exploit this vulnerability, a remote attacker would require a local user to download a specially crafted, corrupted file and locally execute cuobjdump against the file. Such an attack may lead to remote code execution that causes complete denial of service and an impact on data confidentiality and integrity.

References

Affected packages

Ubuntu:Pro:16.04:LTS / nvidia-cuda-toolkit

Package

Name
nvidia-cuda-toolkit
Purl
pkg:deb/ubuntu/nvidia-cuda-toolkit@7.5.18-0ubuntu1?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

6.*

6.5.14-2
6.5.19-2

7.*

7.0.28-1
7.0.28-2
7.0.28-2ubuntu1
7.5.18-0ubuntu1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:18.04:LTS / nvidia-cuda-toolkit

Package

Name
nvidia-cuda-toolkit
Purl
pkg:deb/ubuntu/nvidia-cuda-toolkit@9.1.85-3ubuntu1?arch=source&distro=esm-apps/bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

8.*

8.0.61-1
8.0.61-2
8.0.61-3

9.*

9.0.176-2
9.1.85-1
9.1.85-2ubuntu1
9.1.85-3
9.1.85-3ubuntu1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:20.04:LTS / nvidia-cuda-toolkit

Package

Name
nvidia-cuda-toolkit
Purl
pkg:deb/ubuntu/nvidia-cuda-toolkit@10.1.243-3?arch=source&distro=esm-apps/focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

10.*

10.1.168-1build1
10.1.168-2
10.1.168-3
10.1.243-1ubuntu2
10.1.243-1ubuntu3
10.1.243-2
10.1.243-3

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:22.04:LTS / nvidia-cuda-toolkit

Package

Name
nvidia-cuda-toolkit
Purl
pkg:deb/ubuntu/nvidia-cuda-toolkit@11.5.1-1ubuntu1?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

11.*

11.3.1-4
11.3.1-5
11.4.3-1
11.4.3-1build1
11.5.1-1build1
11.5.1-1ubuntu1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:24.10 / nvidia-cuda-toolkit

Package

Name
nvidia-cuda-toolkit
Purl
pkg:deb/ubuntu/nvidia-cuda-toolkit@12.1.1-2?arch=source&distro=oracular

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

12.*

12.0.1-4build4
12.1.1-1
12.1.1-2

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:24.04:LTS / nvidia-cuda-toolkit

Package

Name
nvidia-cuda-toolkit
Purl
pkg:deb/ubuntu/nvidia-cuda-toolkit@12.0.1-4build4?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

12.*

12.0.1-2
12.0.1-3
12.0.1-4
12.0.1-4build1
12.0.1-4build3
12.0.1-4build4

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:25.04 / nvidia-cuda-toolkit

Package

Name
nvidia-cuda-toolkit
Purl
pkg:deb/ubuntu/nvidia-cuda-toolkit@12.2.2-2build1?arch=source&distro=plucky

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

12.*

12.1.1-2
12.2.0-3
12.2.0-3build1
12.2.1-2
12.2.1-3
12.2.2-1
12.2.2-2
12.2.2-2build1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}