CVE-2021-1057: High severity nvidia vgpu software vulnerability
NVIDIA Virtual GPU Manager NVIDIA vGPU manager contains a vulnerability in the vGPU plugin in which it allows guests to allocate some resources for which the guest is not authorized, which may lead to integrity and confidentiality loss, denial of service, or information disclosure. This affects vGPU version 8.x (prior to 8.6) and version 11.0 (prior to 11.3).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-1057?
CVE-2021-1057 is a vulnerability in the NVIDIA Virtual GPU Manager that allows guests to allocate unauthorized resources, potentially leading to integrity and confidentiality loss, denial of service, or information disclosure.
Which software is affected by CVE-2021-1057?
The NVIDIA Virtual GPU Manager versions between 8.0 and 8.6, as well as versions between 11.0 and 11.3, are affected by CVE-2021-1057.
What is the severity of CVE-2021-1057?
CVE-2021-1057 has a severity rating of 7.8 (High).
How can CVE-2021-1057 be exploited?
CVE-2021-1057 can be exploited by guests who allocate unauthorized resources, potentially leading to various security risks.
Is there a fix available for CVE-2021-1057?
Yes, NVIDIA has released a fix for CVE-2021-1057. It is recommended to update to a non-vulnerable version of the NVIDIA Virtual GPU Manager.