CVE-2023-31026: NVIDIA Virtual GPU

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

NVIDIA vGPU software for Windows and Linux contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a NULL-pointer dereference may lead to denial of service.

Affected products

  • NVIDIA Virtual GPU: before 13.9 (fixed in 13.9); from 14.0, before 15.4 (fixed in 15.4); from 16.0, before 16.2 (fixed in 16.2)

Published 2023-11-02. Last modified 2026-06-17.