CVE-2020-5983: High severity nvidia vgpu software vulnerability
NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin and the host driver kernel module, in which the potential exists to write to a memory location that is outside the intended boundary of the frame buffer memory allocated to guest operating systems, which may lead to denial of service or information disclosure. This affects vGPU version 8.x (prior to 8.5), version 10.x (prior to 10.4) and version 11.0.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-5983?
CVE-2020-5983 is a vulnerability in the NVIDIA Virtual GPU Manager that allows writing to a memory location outside the intended boundary, potentially leading to denial of service.
What software is affected by CVE-2020-5983?
The affected software includes NVIDIA Virtual GPU Manager versions 8.0 to 8.5, versions 10.0 to 10.4, and version 11.0.
What is the severity of CVE-2020-5983?
The severity of CVE-2020-5983 is high with a CVSS score of 7.1.
How can I fix CVE-2020-5983?
To fix CVE-2020-5983, users should update their NVIDIA Virtual GPU Manager to a patched version provided by NVIDIA.
Where can I find more information about CVE-2020-5983?
More information about CVE-2020-5983 can be found on the NVIDIA website at https://nvidia.custhelp.com/app/answers/detail/a_id/5075.