← Back

CVE-2021-1085

nvd nist
Published: Apr 29, 2021Modified: Jun 17, 2026

JSON object

Loading...
7.3
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H
Exploitability: 1.8 / Impact: 5.5
Source: NVD

Description

NVIDIA vGPU driver contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where there is the potential to write to a shared memory location and manipulate the data after the data has been validated, which may lead to denial of service and escalation of privileges and information disclosure but attacker doesn't have control over what information is obtained. This affects vGPU version 12.x (prior to 12.2), version 11.x (prior to 11.4) and version 8.x (prior to 8.7).

Affected (3)

1 product
Virtual Gpu Manager
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 8.0 to 8.7
Running on/withPlatform Versions
Nutanix
Ahv
All versions
Configuration B
2 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
Nvidia
From 11.0 to 11.4
From 12.0 to 12.2
Running on/withPlatform Versions
Citrix
Hypervisor
All versions
Redhat
Enterprise Linux Kernel Based Virtual Machine
All versions
Vmware
Vsphere
All versions

References (2)

Source: psirt@nvidia.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.