Vulnerabilities > Nvidia

DATE CVE VULNERABILITY TITLE RISK
2021-01-08 CVE-2021-1064 NULL Pointer Dereference vulnerability in Nvidia Virtual GPU Manager
NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which it obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer, which may lead to information disclosure or denial of service.
local
low complexity
nvidia CWE-476
3.6
2021-01-08 CVE-2021-1063 Out-of-bounds Read vulnerability in Nvidia Virtual GPU Manager
NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which an input offset is not validated, which may lead to a buffer overread, which in turn may cause tampering of data, information disclosure, or denial of service.
local
low complexity
nvidia CWE-125
4.6
2021-01-08 CVE-2021-1062 Improper Validation of Specified Quantity in Input vulnerability in Nvidia Virtual GPU Manager
NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which an input data length is not validated, which may lead to tampering of data or denial of service.
local
low complexity
nvidia CWE-1284
7.1
2021-01-08 CVE-2021-1061 Race Condition vulnerability in Nvidia Virtual GPU Manager
NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which a race condition may cause the vGPU plugin to continue using a previously validated resource that has since changed, which may lead to denial of service or information disclosure.
local
nvidia CWE-362
3.3
2021-01-08 CVE-2021-1060 Improper Input Validation vulnerability in Nvidia Virtual GPU Manager
NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and vGPU plugin, in which an input index is not validated, which may lead to tampering of data or denial of service.
local
low complexity
nvidia CWE-20
3.6
2021-01-08 CVE-2021-1059 Integer Overflow or Wraparound vulnerability in Nvidia Virtual GPU Manager
NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which an input index is not validated, which may lead to integer overflow, which in turn may cause tampering of data, information disclosure, or denial of service.
local
low complexity
nvidia CWE-190
4.6
2021-01-08 CVE-2021-1058 Improper Validation of Specified Quantity in Input vulnerability in Nvidia Virtual GPU Manager
NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and vGPU plugin, in which an input data size is not validated, which may lead to tampering of data or denial of service.
local
low complexity
nvidia CWE-1284
7.1
2021-01-08 CVE-2021-1057 Allocation of Resources Without Limits or Throttling vulnerability in Nvidia Virtual GPU Manager
NVIDIA Virtual GPU Manager NVIDIA vGPU manager contains a vulnerability in the vGPU plugin in which it allows guests to allocate some resources for which the guest is not authorized, which may lead to integrity and confidentiality loss, denial of service, or information disclosure.
local
low complexity
nvidia CWE-770
4.6
2021-01-08 CVE-2021-1056 Incorrect Default Permissions vulnerability in multiple products
NVIDIA GPU Display Driver for Linux, all versions, contains a vulnerability in the kernel mode layer (nvidia.ko) in which it does not completely honor operating system file system permissions to provide GPU device-level isolation, which may lead to denial of service or information disclosure.
local
low complexity
nvidia debian CWE-276
7.1
2021-01-08 CVE-2021-1055 Unspecified vulnerability in Nvidia GPU Driver
NVIDIA GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape in which improper access control may lead to denial of service and information disclosure.
local
low complexity
nvidia
4.6