CVE-2023-0196
published 2023-03-02CVE-2023-0196: NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running the tool against an ill-formed binary may cause a null- pointer dereference…
PriorityP47low3.3CVSS 3.1
AVLACLPRLUINSUCNINAL
EPSS
0.20%
10.3th percentile
NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running the tool against an ill-formed binary may cause a null- pointer dereference, which may result in a limited denial of service.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nvidia-cuda-toolkit | < nvidia-cuda-toolkit 12.1.0-2 (forky) | nvidia-cuda-toolkit 12.1.0-2 (forky) |
| nvidia | cuda_toolkit | < 12.1 | 12.1 |
| nvidia | nvidia_cuda_toolkit | — | — |
CVSS provenance
nvdv3.13.3LOWCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
osv3.3LOW
cisa5.5MEDIUM
vendor_debian3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2023-0196: NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running the tool against an ill-formed binary may cause a null- pointer derefe
osv·2023-03-02·CVSS 3.3
CVE-2023-0196 [LOW] CVE-2023-0196: NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running the tool against an ill-formed binary may cause a null- pointer derefe
NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running the tool against an ill-formed binary may cause a null- pointer dereference, which may result in a limited denial of service.
GHSA
GHSA-x53c-r2wv-4p59: NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running the tool against an ill-formed binary may cause a null- pointer derefe
ghsa_unreviewed·2023-03-02
CVE-2023-0196 [LOW] CWE-476 GHSA-x53c-r2wv-4p59: NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running the tool against an ill-formed binary may cause a null- pointer derefe
NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running the tool against an ill-formed binary may cause a null- pointer dereference, which may result in a limited denial of service.
CISA
Linux Kernel Race Condition Vulnerability
cisa·2023-05-12·CVSS 5.5
CVE-2014-0196 [MEDIUM] CWE-362 Linux Kernel Race Condition Vulnerability
Vulnerability: Linux Kernel Race Condition Vulnerability
Affected: Linux Kernel
Linux Kernel contains a race condition vulnerability within the n_tty_write function that allows local users to cause a denial-of-service (DoS) or gain privileges via read and write operations with long strings.
Required Action: The impacted product is end-of-life and should be disconnected if still in use.
Notes: https://lkml.iu.edu/hypermail/linux/kernel/1609.1/02103.html; https://nvd.nist.gov/vuln/detail/CVE-2014-0196
Remediation Due Date: 2023-06-02
Debian
CVE-2023-0196: nvidia-cuda-toolkit - NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running ...
vendor_debian·2023·CVSS 3.3
CVE-2023-0196 [LOW] CVE-2023-0196: nvidia-cuda-toolkit - NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running ...
NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running the tool against an ill-formed binary may cause a null- pointer dereference, which may result in a limited denial of service.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 12.1.0-2)
sid: resolved (fixed in 12.1.0-2)
trixie: resolved (fixed in 12.1.0-2)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-03-02
Published