CVE-2021-1066: Input Validation
NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which input data is not validated, which may lead to unexpected consumption of resources, which in turn may lead to denial of service. This affects vGPU version 8.x (prior to 8.6) and version 11.0 (prior to 11.3).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-1066?
CVE-2021-1066 is a vulnerability in the NVIDIA vGPU manager vGPU plugin that allows input data to be unvalidated, leading to resource consumption and potential denial of service attacks.
Which versions of NVIDIA vGPU manager are affected by CVE-2021-1066?
CVE-2021-1066 affects vGPU version 8.x (prior to 8.6) and version 11.0 (prior to 11.3).
What is the severity of CVE-2021-1066?
CVE-2021-1066 has a severity rating of 5.5, which is considered medium.
How can CVE-2021-1066 be exploited?
CVE-2021-1066 can be exploited by sending unvalidated input data to the vGPU plugin, causing resource consumption and potential denial of service attacks.
Is Citrix Hypervisor vulnerable to CVE-2021-1066?
No, Citrix Hypervisor is not vulnerable to CVE-2021-1066.