GPU Display Driver (kernel): Local privesc to host root (kernel buffer overflow)
CVSS 8.5CVE-2022-34671NVIDIA / GPU stackcurated
Impact
Local privesc to host root (kernel buffer overflow)
Who can reach it
Any tenant with a container
What to do
Driver upgrade; drain + reboot node
References
Related entries
- Container Toolkit: Container escape / host file write via symlink followingCVE-2025-23267 · Container ToolkitHigh
- Container Toolkit: Container escape to host root via TOCTOU raceCVE-2026-24260 · Container ToolkitHigh
- NVIDIA Windows GPU Display Driver (nvlddmkm.sys): A local user gets elevated enough to rewrite display configurationCVE-2021-1051 · NVIDIA Windows GPU Display Driver (nvlddmkm.sys)High
- DGX servers (BMC firmware < 2.09.00): RCE on BMC (buffer overflow)CVE-2022-42271 · DGX servers (BMC firmware < 2.09.00)High
- NVIDIA DCGM - nv-hostengine: A heap-based buffer overflow reachable through the bound socket gives denial of serviceCVE-2023-0208 · NVIDIA DCGM - nv-hostengineHigh
- NVIDIA Isaac Lab (Isaac Sim): SB3 configuration parsing reaches code execution with no privileges and no userCVE-2025-23356 · NVIDIA Isaac Lab (Isaac Sim)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.