CVE-2023-31021: NVIDIA Virtual GPU
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
NVIDIA vGPU software for Windows and Linux contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a malicious user in the guest VM can cause a NULL-pointer dereference, which may lead to denial of service.
Affected products
- NVIDIA Virtual GPU: before 13.9 (fixed in 13.9); from 14.0, before 15.4 (fixed in 15.4); from 16.0, before 16.2 (fixed in 16.2)
Published 2023-11-02. Last modified 2026-06-17.