CVE-2020-5989: Null Pointer Dereference
Published Oct 2, 2020
·Updated
NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which it can dereference a NULL pointer, which may lead to denial of service. This affects vGPU version 8.x (prior to 8.5), version 10.x (prior to 10.4) and version 11.0.
Affected Software
2 affected components
Nvidia Virtual GPU Manager>=8.0<8.5
Nvidia Virtual GPU Manager>=10.0<10.4
Event History
Oct 2, 2020
CVE Published
via MITRE·09:10 PM
Data Sourced
via MITRE·09:10 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this NVIDIA Virtual GPU Manager vulnerability?
The vulnerability ID of this NVIDIA Virtual GPU Manager vulnerability is CVE-2020-5989.
2
What is the severity level of CVE-2020-5989?
The severity level of CVE-2020-5989 is medium with a CVSS score of 5.5.
3
How does the vulnerability in NVIDIA Virtual GPU Manager affect the system?
The vulnerability in NVIDIA Virtual GPU Manager can lead to denial of service due to a NULL pointer dereference.
4
Which versions of NVIDIA Virtual GPU Manager are affected by this vulnerability?
This vulnerability affects vGPU version 8.x (prior to 8.5), version 10.x (prior to 10.4), and version 11.0.
5
How can I fix the vulnerability in NVIDIA Virtual GPU Manager?
To fix the vulnerability, upgrade to vGPU version 8.5, version 10.4, or version 11.0.