CVE-2023-31029
published 2024-01-12CVE-2023-31029: NVIDIA DGX A100 baseboard management controller (BMC) contains a vulnerability in the host KVM daemon, where an unauthenticated attacker may cause a stack…
critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
NVIDIA DGX A100 baseboard management controller (BMC) contains a vulnerability in the host KVM daemon, where an unauthenticated attacker may cause a stack overflow by sending a specially crafted network packet. A successful exploit of this vulnerability may lead to arbitrary code execution, denial of service, information disclosure, and data tampering.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| nvidia | dgx_a100 | — | — |
| nvidia | dgx_a100_firmware | < 00.22.05 | 00.22.05 |