NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and Virtual GPU manager (vGPU plugin), in which an input length is not validated, which may lead to information disclosure, tampering of data, or denial of service. This affects vGPU version 12.x (prior to 12.2), version 11.x (prior to 11.4) and version 8.x (prior 8.7).
References
Link | Resource |
---|---|
https://nvidia.custhelp.com/app/answers/detail/a_id/5172 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
History
08 Aug 2023, 14:21
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-1284 |
Information
Published : 2021-04-29 19:15
Updated : 2024-02-04 21:47
NVD link : CVE-2021-1081
Mitre link : CVE-2021-1081
CVE.ORG link : CVE-2021-1081
JSON object : View
Products Affected
microsoft
- windows
nutanix
- ahv
redhat
- enterprise_linux_kernel-based_virtual_machine
vmware
- vsphere
citrix
- hypervisor
linux
- linux_kernel
nvidia
- virtual_gpu_manager
CWE
CWE-1284
Improper Validation of Specified Quantity in Input