CVE-2020-5969: Race Condition
NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which it validates a shared resource before using it, creating a race condition which may lead to denial of service or information disclosure. This affects vGPU version 8.x (prior to 8.4), version 9.x (prior to 9.4) and version 10.x (prior to 10.3).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-5969?
CVE-2020-5969 is a vulnerability in NVIDIA Virtual GPU Manager that allows for a race condition, leading to denial of service or information disclosure.
What is the severity of CVE-2020-5969?
The severity of CVE-2020-5969 is medium, with a base score of 6.3.
Which versions of NVIDIA Virtual GPU Manager are affected by CVE-2020-5969?
NVIDIA Virtual GPU Manager versions 8.x (prior to 8.4), 9.x (prior to 9.4), and 10.x (prior to 10.3) are affected by CVE-2020-5969.
What is the impact of CVE-2020-5969?
CVE-2020-5969 may lead to denial of service or information disclosure.
How can I mitigate the CVE-2020-5969 vulnerability?
To mitigate the CVE-2020-5969 vulnerability, it is recommended to update NVIDIA Virtual GPU Manager to version 8.4, 9.4, or 10.3.