CVE-2021-1118

HIGH

NVIDIA vGPU 8.0-8.9 - Privilege Escalation via Virtual GPU Manager

Title source: llm
STIX 2.1

Description

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where there is the potential to execute privileged operations by the guest OS, which may lead to information disclosure, data tampering, escalation of privileges, and denial of service

References (1)

Core 1
Core References
Vendor Advisory x_refsource_confirm
https://nvidia.custhelp.com/app/answers/detail/a_id/5230

Scores

CVSS v3 7.8
EPSS 0.0036
EPSS Percentile 27.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-269 CWE-250
Status published
Products (1)
nvidia/virtual_gpu 8.0 - 8.9
Published Oct 29, 2021
Tracked Since Feb 18, 2026