PT-2020-18874 · Nvidia · Nvidia Virtual Gpu Manager
Published
2020-10-02
·
Updated
2020-10-14
·
CVE-2020-5984
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
NVIDIA Virtual GPU Manager versions prior to 8.5
NVIDIA Virtual GPU Manager versions prior to 10.4
NVIDIA Virtual GPU Manager version 11.0
Description
The issue is related to a use-after-free vulnerability in the vGPU plugin while freeing some resources. This may lead to denial of service, code execution, and information disclosure.
Recommendations
For versions prior to 8.5, update to version 8.5 or later.
For versions prior to 10.4, update to version 10.4 or later.
For version 11.0, update to a later version, as version 11.0 is affected.
Fix
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Nvidia Virtual Gpu Manager