NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), in which an input length is not validated, which may lead to information disclosure, tampering of data, or denial of service. vGPU version 12.x (prior to 12.2), version 11.x (prior to 11.4) and version 8.x (prior to 8.7)
References
Link | Resource |
---|---|
https://nvidia.custhelp.com/app/answers/detail/a_id/5172 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
History
08 Aug 2023, 14:21
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-1284 |
Information
Published : 2021-04-29 19:15
Updated : 2024-02-28 18:28
NVD link : CVE-2021-1082
Mitre link : CVE-2021-1082
CVE.ORG link : CVE-2021-1082
JSON object : View
Products Affected
vmware
- vsphere
nvidia
- virtual_gpu_manager
nutanix
- ahv
redhat
- enterprise_linux_kernel-based_virtual_machine
citrix
- hypervisor
CWE
CWE-1284
Improper Validation of Specified Quantity in Input