Nvidia Virtual Gpu vulnerabilities
96 known vulnerabilities affecting nvidia/virtual_gpu.
Total CVEs
96
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH56MEDIUM37LOW2
Vulnerabilities
Page 1 of 5
CVE-2022-28181P3CRITICALCVSS 9.9≥ 11.0, < 11.8≥ 13.0, < 13.3+1 more2022-05-17
CVE-2022-28181 [CRITICAL] CWE-787 CVE-2022-28181: NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, w
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network can cause an out-of-bounds write through a specially crafted shader, which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. The scop
nvd
CVE-2022-28182P3HIGHCVSS 8.5≥ 11.0, < 11.8≥ 13.0, < 13.3+1 more2022-05-17
CVE-2022-28182 [HIGH] CWE-787 CVE-2022-28182: NVIDIA GPU Display Driver for Windows contains a vulnerability in the DirectX11 user mode driver (nv
NVIDIA GPU Display Driver for Windows contains a vulnerability in the DirectX11 user mode driver (nvwgf2um/x.dll), where an unauthorized attacker on the network can cause an out-of-bounds write through a specially crafted shader, which may lead to code execution to cause denial of service, escalation of privileges, information disclosure, and data tam
nvd
CVE-2023-31017P3HIGHCVSS 7.8fixed in 13.9≥ 14.0, < 15.4+1 more2023-11-02
CVE-2023-31017 [HIGH] CWE-552 CVE-2023-31017: NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may be able to writ
NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may be able to write arbitrary data to privileged locations by using reparse points. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.
nvd
CVE-2024-0090P3HIGHCVSS 7.8fixed in 13.11≥ 14.0, < 16.6+2 more2024-06-13
CVE-2024-0090 [HIGH] CWE-787 CVE-2024-0090: NVIDIA GPU driver for Windows and Linux contains a vulnerability where a user can cause an out-of-bo
NVIDIA GPU driver for Windows and Linux contains a vulnerability where a user can cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
nvd
CVE-2021-1098P3HIGHCVSS 7.8≥ 8.0, < 8.8≥ 11.0, < 11.5+1 more2021-07-21
CVE-2021-1098 [HIGH] CWE-404 CVE-2021-1098: NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it doe
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it doesn't release some resources during driver unload requests from guests. This flaw allows a malicious guest to perform operations by reusing those resources, which may lead to information disclosure, data tampering, or denial of service. This affects vGPU v
nvd
CVE-2021-1099P3HIGHCVSS 7.8≥ 8.0, < 8.8≥ 11.0, < 11.5+1 more2021-07-21
CVE-2021-1099 [HIGH] CWE-787 CVE-2021-1099: NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin) that could al
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin) that could allow an attacker to cause stack-based buffer overflow and put a customized ROP gadget on the stack. Such an attack may lead to information disclosure, data tampering, or denial of service. This affects vGPU version 12.x (prior to 12.3), version 11.x (prior
nvd
CVE-2022-31606P3HIGHCVSS 7.8≥ 11.0, < 11.8≥ 13.0, < 13.3+1 more2022-11-19
CVE-2022-31606 [HIGH] CWE-787 CVE-2022-31606: NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sy
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where a failure to properly validate data might allow an attacker with basic user capabilities to cause an out-of-bounds access in kernel mode, which could lead to denial of service, information disclosure, escalation of pr
nvd
CVE-2022-42260P3HIGHCVSS 7.8fixed in 11.11≥ 12.0, < 13.6+1 more2022-12-30
CVE-2022-42260 [HIGH] CWE-281 CVE-2022-42260: NVIDIA vGPU Display Driver for Linux guest contains a vulnerability in a D-Bus configuration file, w
NVIDIA vGPU Display Driver for Linux guest contains a vulnerability in a D-Bus configuration file, where an unauthorized user in the guest VM can impact protected D-Bus endpoints, which may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.
nvd
CVE-2021-1097P3HIGHCVSS 7.8≥ 8.0, < 8.8≥ 11.0, < 11.5+1 more2021-07-21
CVE-2021-1097 [HIGH] CWE-20 CVE-2021-1097: NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it imp
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it improperly validates the length field in a request from a guest. This flaw allows a malicious guest to send a length field that is inconsistent with the actual length of the input, which may lead to information disclosure, data tampering, or denial of service
nvd
CVE-2022-31610P3HIGHCVSS 7.8≥ 11.0, < 11.8≥ 13.0, < 13.3+1 more2022-11-19
CVE-2022-31610 [HIGH] CWE-787 CVE-2022-31610: NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sy
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where a local user with basic capabilities can cause an out-of-bounds write, which may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.
nvd
CVE-2024-0089P3HIGHCVSS 7.8fixed in 13.11≥ 14.0, < 16.6+1 more2024-06-13
CVE-2024-0089 [HIGH] CWE-665 CVE-2024-0089: NVIDIA GPU Display Driver for Windows contains a vulnerability where the information from a previous
NVIDIA GPU Display Driver for Windows contains a vulnerability where the information from a previous client or another process could be disclosed. A successful exploit of this vulnerability might lead to code execution, information disclosure, or data tampering.
nvd
CVE-2024-0084P3HIGHCVSS 7.8fixed in 13.11≥ 14.0, < 16.6+1 more2024-06-13
CVE-2024-0084 [HIGH] CWE-250 CVE-2024-0084: NVIDIA vGPU software for Linux contains a vulnerability in the Virtual GPU Manager, where the guest
NVIDIA vGPU software for Linux contains a vulnerability in the Virtual GPU Manager, where the guest OS could execute privileged operations. A successful exploit of this vulnerability might lead to information disclosure, data tampering, escalation of privileges, and denial of service.
nvd
CVE-2024-0085P3HIGHCVSS 7.8fixed in 13.11≥ 14.0, < 16.6+2 more2024-06-13
CVE-2024-0085 [HIGH] CWE-266 CVE-2024-0085: NVIDIA vGPU software for Windows and Linux contains a vulnerability where unprivileged users could e
NVIDIA vGPU software for Windows and Linux contains a vulnerability where unprivileged users could execute privileged operations on the host. A successful exploit of this vulnerability might lead to data tampering, escalation of privileges, and denial of service.
nvd
CVE-2024-0107P3HIGHCVSS 7.8fixed in 13.12≥ 14.0, < 16.7+1 more2024-08-08
CVE-2024-0107 [HIGH] CWE-125 CVE-2024-0107: NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unpr
NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular user can cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
nvd
CVE-2021-1118P3HIGHCVSS 7.8≥ 8.0, < 8.9≥ 11.0, < 11.6+2 more2021-10-29
CVE-2021-1118 [HIGH] CWE-250 CVE-2021-1118: NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where there
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where there is the potential to execute privileged operations by the guest OS, which may lead to information disclosure, data tampering, escalation of privileges, and denial of service
nvd
CVE-2022-34669P3HIGHCVSS 7.8fixed in 11.11≥ 13.0, < 13.6+1 more2022-12-30
CVE-2022-34669 [HIGH] CWE-73 CVE-2022-34669: NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unpr
NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular user can access or modify system files or other files that are critical to the application, which may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.
nvd
CVE-2023-0189P3HIGHCVSS 7.8fixed in 11.12≥ 13.0, < 13.7+1 more2023-04-01
CVE-2023-0189 [HIGH] CWE-822 CVE-2023-0189: NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler which
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
nvd
CVE-2022-34672P3HIGHCVSS 7.8fixed in 11.11≥ 13.0, < 13.6+1 more2022-12-30
CVE-2022-34672 [HIGH] CWE-284 CVE-2022-34672: NVIDIA Control Panel for Windows contains a vulnerability where an unauthorized user or an unprivile
NVIDIA Control Panel for Windows contains a vulnerability where an unauthorized user or an unprivileged regular user can compromise the security of the software by gaining privileges, reading sensitive information, or executing commands.
nvd
CVE-2022-28184P3HIGHCVSS 7.8≥ 11.0, < 11.8≥ 13.0, < 13.3+1 more2022-05-17
CVE-2022-28184 [HIGH] CWE-284 CVE-2022-28184: NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer (n
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where an unprivileged regular user can access administrator- privileged registers, which may lead to denial of service, information disclosure, and data tampering.
nvd
CVE-2022-34670P3HIGHCVSS 7.8fixed in 11.11≥ 12.0, < 13.6+1 more2022-12-30
CVE-2022-34670 [HIGH] CWE-197 CVE-2022-34670: NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where an unprivileged regular user can cause truncation errors when casting a primitive to a primitive of smaller size causes data to be lost in the conversion, which may lead to denial of service or information disclosure.
nvd
1 / 5Next →