cbcvebase.

Nvidia Virtual Gpu Manager vulnerabilities

44 known vulnerabilities affecting nvidia/virtual_gpu_manager.

Total CVEs
44
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH32MEDIUM12

Vulnerabilities

Page 1 of 3
CVE-2026-24187HIGHCVSS 8.8v595.58.02(All versions up to and including the March 2026 release)v595.58.02(All versions prior to and including vGPU 20.0)+2 more2026-05-26
CVE-2026-24187 [HIGH] CWE-416 CVE-2026-24187: NVIDIA Display Driver for Linux contains a vulnerability where an attacker could cause a use-after-f NVIDIA Display Driver for Linux contains a vulnerability where an attacker could cause a use-after-free. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.
nvd
CVE-2026-24192HIGHCVSS 7.8v595.58.02(All versions up to and including the March 2026 release)v595.58.02(All versions prior to and including vGPU 20.0)+2 more2026-05-26
CVE-2026-24192 [HIGH] CWE-681 CVE-2026-24192: NVIDIA Display Driver for Linux contains a vulnerability where an attacker could cause an incorrect NVIDIA Display Driver for Linux contains a vulnerability where an attacker could cause an incorrect conversion between numeric types, leading to a heap buffer overflow. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.
nvd
CVE-2026-24200HIGHCVSS 7.0v595.58.02(All versions up to and including the March 2026 release)v580.126.08(All versions prior to and including vGPU 19.4)+3 more2026-05-26
CVE-2026-24200 [HIGH] CWE-416 CVE-2026-24200: NVIDIA vGPU software contains a vulnerability in the virtual GPU manager, where an attacker could ca NVIDIA vGPU software contains a vulnerability in the virtual GPU manager, where an attacker could cause a use-after-free for stack memory. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.
nvd
CVE-2026-24191HIGHCVSS 7.8v595.94(All versions prior to and including vGPU 20.0)v582.16(All versions prior to and including vGPU 19.4)2026-05-26
CVE-2026-24191 [HIGH] CWE-367 CVE-2026-24191: NVIDIA Display Driver for Windows contains a vulnerability where an attacker could cause a time-of-c NVIDIA Display Driver for Windows contains a vulnerability where an attacker could cause a time-of-check time-of-use issue. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.
nvd
CVE-2026-24197MEDIUMCVSS 6.5v595.58.02(All versions prior to and including vGPU 20.0)v580.126.08(All versions prior to and including vGPU 19.4)+2 more2026-05-26
CVE-2026-24197 [MEDIUM] CWE-1188 CVE-2026-24197: NVIDIA Display Driver for Linux contains a vulnerability in the Multi-Instance GPU (MIG) partition m NVIDIA Display Driver for Linux contains a vulnerability in the Multi-Instance GPU (MIG) partition management, where an insecure default initialization of memory subsystem routing resources could lead to data corruption or a hang during partition reconfiguration. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2026-24199MEDIUMCVSS 4.7v595.58.02(All versions up to and including the March 2026 release)v580.126.08(All versions prior to and including vGPU 19.4)+1 more2026-05-26
CVE-2026-24199 [MEDIUM] CWE-362 CVE-2026-24199: NVIDIA Display Driver for Linux contains a vulnerability in a kernel module, where a user could caus NVIDIA Display Driver for Linux contains a vulnerability in a kernel module, where a user could cause a race condition by reordering compiler or processor memory instructions. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2026-24201MEDIUMCVSS 5.8v595.58.02(All versions up to and including the March 2026 release)v595.58.02(All versions prior to and including vGPU 20.0)+4 more2026-05-26
CVE-2026-24201 [MEDIUM] CWE-787 CVE-2026-24201: NVIDIA vGPU software contains a vulnerability in the virtual GPU manager, where an attacker could ca NVIDIA vGPU software contains a vulnerability in the virtual GPU manager, where an attacker could cause an out-of-bound access. A successful exploit of this vulnerability might lead to data tampering, denial of service, or information disclosure.
nvd
CVE-2026-24182MEDIUMCVSS 6.5v595.58.02(All versions up to and including the March 2026 release)2026-05-26
CVE-2026-24182 [MEDIUM] CWE-667 CVE-2026-24182: NVIDIA Display Driver for Windows and Linux contains a vulnerability where an attacker could leak he NVIDIA Display Driver for Windows and Linux contains a vulnerability where an attacker could leak held driver locks. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-33220HIGHCVSS 7.8v580.105.06(All versions prior to and including vGPU software 19.3)v570.195.02(All versions prior to and including vGPU software 18.5)+1 more2026-01-28
CVE-2025-33220 [HIGH] CWE-416 CVE-2025-33220: NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest co NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest could cause heap memory access after the memory is freed. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, or information disclosure.
nvd
CVE-2025-33219HIGHCVSS 7.8v580.105.06(All versions prior to and including vGPU software 19.3)v570.195.02(All versions prior to and including vGPU software 18.5)+2 more2026-01-28
CVE-2025-33219 [HIGH] CWE-190 CVE-2025-33219: NVIDIA Display Driver for Linux contains a vulnerability in the NVIDIA kernel module where an attack NVIDIA Display Driver for Linux contains a vulnerability in the NVIDIA kernel module where an attacker could cause an integer overflow or wraparound. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, or information disclosure.
nvd
CVE-2025-23352HIGHCVSS 7.8v580.82.02(All versions up to and including the August 2025 release)v580.82.02(All versions prior to and including vGPU 19.1)+2 more2025-10-23
CVE-2025-23352 [HIGH] CWE-824 CVE-2025-23352: NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest co NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest could cause uninitialized pointer access. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
nvd
CVE-2025-23332MEDIUMCVSS 5.0v580.82.02(All versions prior to and including vGPU 19.1)v570.172.07(All versions prior to and including vGPU 18.4)+1 more2025-10-23
CVE-2025-23332 [MEDIUM] CWE-476 CVE-2025-23332: NVIDIA Display Driver for Linux contains a vulnerability in a kernel module, where an attacker might NVIDIA Display Driver for Linux contains a vulnerability in a kernel module, where an attacker might be able to trigger a null pointer deference. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-23300MEDIUMCVSS 5.5v580.82.02(All versions up to and including the August 2025 release)v580.82.02(All versions prior to and including vGPU 19.1)+2 more2025-10-23
CVE-2025-23300 [MEDIUM] CWE-476 CVE-2025-23300: NVIDIA Display Driver for Linux contains a vulnerability in the kernel driver, where a user could ca NVIDIA Display Driver for Linux contains a vulnerability in the kernel driver, where a user could cause a null pointer dereference by allocating a specific memory resource. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-23282HIGHCVSS 7.0v580.82.02(All versions up to and including the August 2025 release)v580.82.02(All versions prior to and including vGPU 19.1)+2 more2025-10-10
CVE-2025-23282 [HIGH] CWE-415 CVE-2025-23282: NVIDIA Display Driver for Linux contains a vulnerability where an attacker might be able to use a ra NVIDIA Display Driver for Linux contains a vulnerability where an attacker might be able to use a race condition to escalate privileges. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure.
nvd
CVE-2021-1081HIGHCVSS 7.8≥ 8.0, < 8.7≥ 11.0, < 11.4+1 more2021-04-29
CVE-2021-1081 [HIGH] CWE-1284 CVE-2021-1081: NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and Virtual GPU manage NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and Virtual GPU manager (vGPU plugin), in which an input length is not validated, which may lead to information disclosure, tampering of data, or denial of service. This affects vGPU version 12.x (prior to 12.2), version 11.x (prior to 11.4) and version 8.x (prior 8.7).
nvd
CVE-2021-1085HIGHCVSS 7.3≥ 8.0, < 8.7≥ 11.0, < 11.4+1 more2021-04-29
CVE-2021-1085 [HIGH] CWE-20 CVE-2021-1085: NVIDIA vGPU driver contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where there is NVIDIA vGPU driver contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where there is the potential to write to a shared memory location and manipulate the data after the data has been validated, which may lead to denial of service and escalation of privileges and information disclosure but attacker doesn't have control over what informati
nvd
CVE-2021-1086HIGHCVSS 7.1≥ 8.0, < 8.7≥ 11.0, < 11.4+1 more2021-04-29
CVE-2021-1086 [HIGH] CWE-863 CVE-2021-1086: NVIDIA vGPU driver contains a vulnerability in the Virtual GPU Manager (vGPU plugin) where it allows NVIDIA vGPU driver contains a vulnerability in the Virtual GPU Manager (vGPU plugin) where it allows guests to control unauthorized resources, which may lead to integrity and confidentiality loss or information disclosure. This affects vGPU version 12.x (prior to 12.2), version 11.x (prior to 11.4) and version 8.x (prior to 8.7).
nvd
CVE-2021-1080HIGHCVSS 7.8≥ 8.0, < 8.7≥ 11.0, < 11.4+1 more2021-04-29
CVE-2021-1080 [HIGH] CWE-20 CVE-2021-1080: NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), in which cer NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), in which certain input data is not validated, which may lead to information disclosure, tampering of data, or denial of service. This affects vGPU version 12.x (prior to 12.2), version 11.x (prior to 11.4) and version 8.x (prior 8.7).
nvd
CVE-2021-1083HIGHCVSS 7.8≥ 11.0, < 11.4≥ 12.0, < 12.22021-04-29
CVE-2021-1083 [HIGH] CWE-1284 CVE-2021-1083: NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and Virtual GPU Manage NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and Virtual GPU Manager (vGPU plugin), in which an input length is not validated, which may lead to information disclosure, tampering of data, or denial of service. This affects vGPU version 12.x (prior to 12.2) and version 11.x (prior to 11.4).
nvd
CVE-2021-1082HIGHCVSS 7.8≥ 8.0, < 8.7≥ 11.0, < 11.4+1 more2021-04-29
CVE-2021-1082 [HIGH] CWE-1284 CVE-2021-1082: NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), in which an NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), in which an input length is not validated, which may lead to information disclosure, tampering of data, or denial of service. vGPU version 12.x (prior to 12.2), version 11.x (prior to 11.4) and version 8.x (prior to 8.7)
nvd