High severity7.8NVD Advisory· Published Aug 5, 2022· Updated Jun 17, 2026
CVE-2022-31609
CVE-2022-31609
Description
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it allows the guest VM to allocate resources for which the guest is not authorized. This vulnerability may lead to loss of data integrity and confidentiality, denial of service, or information disclosure.
Affected products
5cpe:2.3:a:nvidia:virtual_gpu:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:nvidia:virtual_gpu:*:*:*:*:*:*:*:*range: >=11.0,<11.8
- cpe:2.3:a:nvidia:virtual_gpu:14.0:*:*:*:*:*:*:*
- cpe:2.3:a:nvidia:virtual_gpu:14.1:*:*:*:*:*:*:*
- NVIDIA/NVIDIA Virtual GPU Software and NVIDIA Cloud Gamingv5Range: vGPU version 14.x (prior to 14.2), version 13.x (prior to 13.4) and version 11.x (prior 11.9).
Patches
Vulnerability mechanics
References
1- nvidia.custhelp.com/app/answers/detail/a_id/5383nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.