CVE-2021-1100 Information

Description

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager kernel mode driver (nvidia.ko) in which a pointer to a user-space buffer is not validated before it is dereferenced which may lead to denial of service. This affects vGPU version 12.x (prior to 12.3) version 11.x (prior to 11.5) and version 8.x (prior 8.8).

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Reference

https://nvidia.custhelp.com/app/answers/detail/a_id/5211

Attack Complexity

LOW

Privileges Required

LOW

User Interaction Required

LOW

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

NONE

Availability Impact

NONE

Base Score

HIGH

Base Severity

5.5

Share on: