PT-2020-18878 · Nvidia · Nvidia Virtual Gpu Manager
Published
2020-10-02
·
Updated
2021-07-21
·
CVE-2020-5988
CVSS v3.1
7.1
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
NVIDIA Virtual GPU Manager versions prior to 8.5
NVIDIA Virtual GPU Manager versions prior to 10.4
NVIDIA Virtual GPU Manager version 11.0
Description
The issue is related to a vulnerability in the vGPU plugin of NVIDIA Virtual GPU Manager, where allocated memory can be freed twice. This may lead to information disclosure or denial of service.
Recommendations
For versions prior to 8.5, update to version 8.5 or later.
For versions prior to 10.4, update to version 10.4 or later.
For version 11.0, update to a later version that contains a fix for this issue.
Fix
Double Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Nvidia Virtual Gpu Manager