← Back

Nvidia

nvidia

789 CVEs • 358 products

Products (358)

Click to collapse
Toggle
Gpu Driver
gpu_driver
Virtual Gpu
virtual_gpu
Jetson Linux
jetson_linux
Cuda Toolkit
cuda_toolkit
Cloud Gaming
cloud_gaming
Nemo
nemo
Dgx Os
dgx_os
Bmc
bmc
Megatron Lm
megatron-lm
Jetson Tx1
jetson_tx1
Jetson Tx2
jetson_tx2
Quadro M1000m
quadro_m1000m
Quadro M2000
quadro_m2000
Quadro M2000m
quadro_m2000m
Quadro M3000m
quadro_m3000m
Quadro M4000
quadro_m4000
Quadro M4000m
quadro_m4000m
Quadro M5000
quadro_m5000
Quadro M5000m
quadro_m5000m
Quadro M500m
quadro_m500m
Quadro M5500
quadro_m5500
Quadro M6000
quadro_m6000
Quadro M600m
quadro_m600m
Tesla M40
tesla_m40
Tesla M6
tesla_m6
Tesla M60
tesla_m60
Tesla P100
tesla_p100
Shield Tv
shield_tv
Jetson Nano
jetson_nano
Quadro M1200
quadro_m1200
Quadro M2200
quadro_m2200
Quadro M520
quadro_m520
Quadro M620
quadro_m620
Shield Tv Pro
shield_tv_pro
Tesla M10
tesla_m10
Tesla M4
tesla_m4
Gtx Titan
gtx_titan
Gtx Titan Z
gtx_titan_z
Quadro P5000
quadro_p5000
Quadro P6000
quadro_p6000
Titan X
titan_x
Tesla P4
tesla_p4
Tesla P40
tesla_p40
Dgx 2
dgx-2

CVEs (789)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Nvidia
2Cloud Gaming
Virtual Gpu
Jun 17, 2026
Nov 10, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a local user with basic capabilities can cause a null-pointer dereference, which may lead to denial of service.
1Nvidia
1Data Plane Development Kit
Jun 17, 2026
Sep 1, 2022
N/A· v4
8.6 HIGH· v3
N/A· v2
NVIDIA’s distribution of the Data Plane Development Kit (MLNX_DPDK) contains a vulnerability in the network stack, where error recovery is not handled properly, which can allow a remote attacker to cause denial of servic...Show more
NVIDIA’s distribution of the Data Plane Development Kit (MLNX_DPDK) contains a vulnerability in the network stack, where error recovery is not handled properly, which can allow a remote attacker to cause denial of service and some impact to data integrity and confidentiality.Show less
1Nvidia
1Nvflare
Jun 17, 2026
Aug 29, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
NVFLARE, versions prior to 2.1.4, contains a vulnerability that deserialization of Untrusted Data due to Pickle usage may allow an unprivileged network attacker to cause Remote Code Execution, Denial Of Service, and Impa...Show more
NVFLARE, versions prior to 2.1.4, contains a vulnerability that deserialization of Untrusted Data due to Pickle usage may allow an unprivileged network attacker to cause Remote Code Execution, Denial Of Service, and Impact to both Confidentiality and Integrity.Show less
1Nvidia
1Virtual Gpu
Jun 17, 2026
Aug 5, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it can dereference a null pointer, which may lead to denial of service.
1Nvidia
1Virtual Gpu
Jun 17, 2026
Aug 5, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin) where it may double-free some resources. An attacker may exploit this vulnerability with other vulnerabilities to cause denial of ser...Show more
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin) where it may double-free some resources. An attacker may exploit this vulnerability with other vulnerabilities to cause denial of service, code execution, and information disclosure.Show less
1Nvidia
1Virtual Gpu
Jun 17, 2026
Aug 5, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it allows the guest VM to allocate resources for which the guest is not authorized. This vulnerability may lead to loss of dat...Show more
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it allows the guest VM to allocate resources for which the guest is not authorized. This vulnerability may lead to loss of data integrity and confidentiality, denial of service, or information disclosure.Show less
1Nvidia
1Dgx A100 Firmware
Jun 17, 2026
Jul 4, 2022
N/A· v4
6.7 MEDIUM· v3
4.4 MEDIUM· v2
NVIDIA DGX A100 contains a vulnerability in SBIOS in the IpSecDxe, where a user with high privileges and preconditioned IpSecDxe global data can exploit improper validation of an array index to cause code execution, whic...Show more
NVIDIA DGX A100 contains a vulnerability in SBIOS in the IpSecDxe, where a user with high privileges and preconditioned IpSecDxe global data can exploit improper validation of an array index to cause code execution, which may lead to denial of service, data integrity impact, and information disclosure.Show less
1Nvidia
1Dgx A100 Firmware
Jun 17, 2026
Jul 4, 2022
N/A· v4
6.7 MEDIUM· v3
4.4 MEDIUM· v2
NVIDIA DGX A100 contains a vulnerability in SBIOS in the IpSecDxe, where a user with elevated privileges and a preconditioned heap can exploit an out-of-bounds write vulnerability, which may lead to code execution, denia...Show more
NVIDIA DGX A100 contains a vulnerability in SBIOS in the IpSecDxe, where a user with elevated privileges and a preconditioned heap can exploit an out-of-bounds write vulnerability, which may lead to code execution, denial of service, data integrity impact, and information disclosure.Show less
1Nvidia
1Dgx A100 Firmware
Jun 17, 2026
Jul 4, 2022
N/A· v4
6.7 MEDIUM· v3
4.6 MEDIUM· v2
NVIDIA DGX A100 contains a vulnerability in SBIOS in the SmbiosPei, which may allow a highly privileged local attacker to cause an out-of-bounds write, which may lead to code execution, denial of service, compromised int...Show more
NVIDIA DGX A100 contains a vulnerability in SBIOS in the SmbiosPei, which may allow a highly privileged local attacker to cause an out-of-bounds write, which may lead to code execution, denial of service, compromised integrity, and information disclosure.Show less
1Nvidia
1Dgx A100 Firmware
Jun 17, 2026
Jul 4, 2022
N/A· v4
8.2 HIGH· v3
4.6 MEDIUM· v2
NVIDIA DGX A100 contains a vulnerability in SBIOS in the SmmCore, where a user with high privileges can chain another vulnerability to this vulnerability, causing an integer overflow, possibly leading to code execution,...Show more
NVIDIA DGX A100 contains a vulnerability in SBIOS in the SmmCore, where a user with high privileges can chain another vulnerability to this vulnerability, causing an integer overflow, possibly leading to code execution, escalation of privileges, denial of service, compromised integrity, and information disclosure. The scope of impact can extend to other components.Show less
1Nvidia
1Dgx A100 Firmware
Jun 17, 2026
Jul 4, 2022
N/A· v4
8.2 HIGH· v3
4.6 MEDIUM· v2
NVIDIA DGX A100 contains a vulnerability in SBIOS in the Ofbd, where a local user with elevated privileges can cause access to an uninitialized pointer, which may lead to code execution, escalation of privileges, denial...Show more
NVIDIA DGX A100 contains a vulnerability in SBIOS in the Ofbd, where a local user with elevated privileges can cause access to an uninitialized pointer, which may lead to code execution, escalation of privileges, denial of service, and information disclosure. The scope of impact can extend to other components.Show less
1Nvidia
1Dgx A100 Firmware
Jun 17, 2026
Jul 2, 2022
N/A· v4
8.2 HIGH· v3
4.6 MEDIUM· v2
NVIDIA DGX A100 contains a vulnerability in SBIOS in the BiosCfgTool, where a local user with elevated privileges can read and write beyond intended bounds in SMRAM, which may lead to code execution, escalation of privil...Show more
NVIDIA DGX A100 contains a vulnerability in SBIOS in the BiosCfgTool, where a local user with elevated privileges can read and write beyond intended bounds in SMRAM, which may lead to code execution, escalation of privileges, denial of service, and information disclosure. The scope of impact can extend to other components.Show less
1Nvidia
1Nvflare
Jun 17, 2026
Jul 1, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
NVFLARE, versions prior to 2.1.2, contains a vulnerability in its utils module, where YAML files are loaded via yaml.load() instead of yaml.safe_load(). The deserialization of Untrusted Data, may allow an unprivileged ne...Show more
NVFLARE, versions prior to 2.1.2, contains a vulnerability in its utils module, where YAML files are loaded via yaml.load() instead of yaml.safe_load(). The deserialization of Untrusted Data, may allow an unprivileged network attacker to cause Remote Code Execution, Denial Of Service, and Impact to both Confidentiality and Integrity.Show less
1Nvidia
1Nvflare
Jun 17, 2026
Jul 1, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
NVFLARE, versions prior to 2.1.2, contains a vulnerability in its PKI implementation module, where The CA credentials are transported via pickle and no safe deserialization. The deserialization of Untrusted Data may allo...Show more
NVFLARE, versions prior to 2.1.2, contains a vulnerability in its PKI implementation module, where The CA credentials are transported via pickle and no safe deserialization. The deserialization of Untrusted Data may allow an unprivileged network attacker to cause Remote Code Execution, Denial Of Service, and Impact to both Confidentiality and Integrity.Show less
1Nvidia
1Virtual Gpu
Jun 17, 2026
May 17, 2022
N/A· v4
4.1 MEDIUM· v3
1.9 LOW· v2
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where it may lead to a use-after-free, which in turn may cause denial of service. This attack is complex to carry out because the atta...Show more
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where it may lead to a use-after-free, which in turn may cause denial of service. This attack is complex to carry out because the attacker needs to have control over freeing some host side resources out of sequence, which requires elevated privileges.Show less
1Nvidia
1Virtual Gpu
Jun 17, 2026
May 17, 2022
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where uncontrolled resource consumption can be triggered by an unprivileged regular user, which may lead to denial of service.
1Nvidia
1Gpu Display Driver
Jun 17, 2026
May 17, 2022
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where improper input validation can cause denial of service.
1Nvidia
1Gpu Display Driver
Jun 17, 2026
May 17, 2022
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where a NULL pointer dereference may lead to a system crash.
1Nvidia
2Gpu Display Driver
Virtual Gpu
Jun 17, 2026
May 17, 2022
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where the product receives input or data, but does not validate or incorrectly validates t...Show more
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where the product receives input or data, but does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly, which may lead to denial of service.Show less
1Nvidia
1Gpu Display Driver
Jun 17, 2026
May 17, 2022
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where the memory management software does not release a resource after its effective lifetime has ended, which may l...Show more
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where the memory management software does not release a resource after its effective lifetime has ended, which may lead to denial of service.Show less