CVE-2022-31614

HIGH

NVIDIA vGPU < - Use After Free

Title source: llm

Description

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin) where it may double-free some resources. An attacker may exploit this vulnerability with other vulnerabilities to cause denial of service, code execution, and information disclosure.

Scores

CVSS v3 7.0
EPSS 0.0010
EPSS Percentile 28.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-415
Status published

Affected Products (3)

nvidia/virtual_gpu < 11.8
nvidia/virtual_gpu
nvidia/virtual_gpu

Timeline

Published Aug 05, 2022
Tracked Since Feb 18, 2026