cvelist/2021/1xxx/CVE-2021-1061.json
PSIRT-NVIDIA 1d145bf412 VGPU_CVEs_2021
VGPU_CVEs_2021
2021-01-08 09:01:48 -06:00

63 lines
1.4 KiB
JSON

{
"data_type" : "CVE",
"data_format" : "MITRE",
"data_version" : "4.0",
"CVE_data_meta" : {
"ID" : "CVE-2021-1061",
"ASSIGNER" : "psirt@nvidia.com",
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"vendor_name" : "NVIDIA",
"product" : {
"product_data" : [
{
"product_name" : "NVIDIA Virtual GPU Manager",
"version" : {
"version_data" : [
{
"version_value" : "Version 8.x (prior to 8.6) and version 11.0 (prior to 11.3)"
}
]
}
}
]
}
}
]
}
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "denial of service or information disclosure"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"refsource" : "CONFIRM",
"name" : "https://nvidia.custhelp.com/app/answers/detail/a_id/5142",
"url" : "https://nvidia.custhelp.com/app/answers/detail/a_id/5142"
}
]
},
"description" : {
"description_data" : [
{
"lang" : "eng",
"value" : "NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which a race condition may cause the vGPU plugin to continue using a previously validated resource that has since changed, which may lead to denial of service or information disclosure. This affects vGPU version 8.x (prior to 8.6) and version 11.0 (prior to 11.3)."
}
]
}
}