CVE-2020-5973
published 2020-06-30CVE-2020-5973: NVIDIA Virtual GPU Manager and the guest drivers contain a vulnerability in vGPU plugin, in which there is the potential to execute privileged operations…
medium4.4CVSS 3.1
AVLACLPRHUINSUCNINAH
NVIDIA Virtual GPU Manager and the guest drivers contain a vulnerability in vGPU plugin, in which there is the potential to execute privileged operations, which may lead to denial of service. This affects vGPU version 8.x (prior to 8.4), version 9.x (prior to 9.4) and version 10.x (prior to 10.3).
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| linux | linux_kernel | >= 0 < 4.15.0-108.109 | 4.15.0-108.109 |
| linux | linux_kernel | >= 0 < 5.4.0-39.43 | 5.4.0-39.43 |
| nvidia | nvidia_vgpu_software | — | — |
| nvidia | virtual_gpu | 10.0 – 10.2 | — |
| nvidia | virtual_gpu | 8.0 – 8.3 | — |
| nvidia | virtual_gpu | 9.0 – 9.3 | — |
CVSS provenance
nvdv3.14.4MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH