cbcvebase.
CVE-2023-25517
published 2023-07-04

CVE-2023-25517: NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a guest OS may be able to control resources for which it is not…

PriorityP431high7.1CVSS 3.1
AVLACLPRLUINSUCHIHAN
EPSS
0.17%
6.2th percentile
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a guest OS may be able to control resources for which it is not authorized, which may lead to information disclosure and data tampering.

Affected

4 ranges
VendorProductVersion rangeFixed in
nvidiagpu_display_driver< 11.1311.13
nvidiagpu_display_driver>= 13.0 < 13.813.8
nvidiagpu_display_driver>= 15.0 < 15.315.3
nvidiavgpu_software
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.