First published: Tue Jun 30 2020(Updated: )
Last updated 24 July 2024
Credit: psirt@nvidia.com psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
NVIDIA Virtual GPU | >=8.0<=8.3 | |
NVIDIA Virtual GPU | >=9.0<=9.3 | |
NVIDIA Virtual GPU | >=10.0<=10.2 | |
Canonical Ubuntu Linux | =18.04 | |
Canonical Ubuntu Linux | =19.10 | |
Canonical Ubuntu Linux | =20.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-5973 is a vulnerability in the NVIDIA Virtual GPU Manager and the guest drivers that allows for the potential execution of privileged operations, leading to denial of service.
vGPU version 8.x (prior to 8.4), version 9.x (prior to 9.4), and version 10.x (prior to 10.3) are affected by CVE-2020-5973.
CVE-2020-5973 has a severity value of 4.4 (medium severity).
To fix CVE-2020-5973, update your NVIDIA Virtual GPU Manager and guest drivers to version 8.4 or higher for vGPU version 8.x, version 9.4 or higher for vGPU version 9.x, and version 10.3 or higher for vGPU version 10.x.
You can find more information about CVE-2020-5973 at the following references: https://nvidia.custhelp.com/app/answers/detail/a_id/5031, https://usn.ubuntu.com/4404-1/, https://usn.ubuntu.com/4404-2/.