CVE-2023-0185
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where sign conversion issuescasting an unsigned primitive to signed may lead to denial of service or information disclosure.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 6.7
- CVSS vector
- CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:H
- EPSS probability
- 0.04%
- CWE
- CWE-196
- Published
- 2023-04-01
- Last modified
- 2026-03-13
Affected products
- NVIDIA vGPU software (Virtual GPU Manager - Citrix Hypervisor, VMware vSphere, Red Hat Enterprise Linux KVM), NVIDIA Cloud Gaming (Virtual GPU Manager - Red Hat Enterprise Linux KVM)
Weakness type
Related vulnerabilities
- CVE-2026-58317 — Unsigned to Signed Conversion Error (CWE-196) vulnerability exists in TTSSH2 plugin of Tera Term...
- CVE-2026-14454 — Imager versions before 1.033 for Perl treat unsigned EXIF IFD entry counts as signed
- CVE-2026-34155 — RAUC: Improper Signing of Plain Bundles Exceeding 2 GiB
- CVE-2022-36025 — Incorrect Conversion between Numeric Types in Besu Ethereum Client
- CVE-2020-13545 — An exploitable signed conversion vulnerability exists in the TextMaker document parsing...
- CVE-2020-7067 — OOB Read in urldecode()