CVE-2020-5988: Double Free
Published Oct 2, 2020
·Updated
NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which allocated memory can be freed twice, which may lead to information disclosure or denial of service. This affects vGPU version 8.x (prior to 8.5), version 10.x (prior to 10.4) and version 11.0.
Affected Software
3 affected components
Nvidia Virtual GPU Manager>=8.0<8.5
Nvidia Virtual GPU Manager>=10.0<10.4
Nvidia Virtual GPU Manager=11.0
Event History
Oct 2, 2020
CVE Published
via MITRE·09:10 PM
Data Sourced
via MITRE·09:10 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this NVIDIA Virtual GPU Manager vulnerability?
The vulnerability ID for this NVIDIA Virtual GPU Manager vulnerability is CVE-2020-5988.
2
What is the severity of CVE-2020-5988?
The severity of CVE-2020-5988 is high with a CVSS score of 7.1.
3
What is the affected software for CVE-2020-5988?
The affected software for CVE-2020-5988 is NVIDIA Virtual GPU Manager versions 8.x (prior to 8.5), 10.x (prior to 10.4), and 11.0.
4
What is the impact of CVE-2020-5988?
The impact of CVE-2020-5988 can lead to information disclosure or denial of service.
5
How can I fix CVE-2020-5988?
To fix CVE-2020-5988, it is recommended to update to the latest versions of NVIDIA Virtual GPU Manager.