Vulnerability Details CVE-2023-0206
NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may modify arbitrary memory of SMRAM by exploiting the NVME SMM API. A successful exploit of this vulnerability may lead to denial of service, escalation of privileges, and information disclosure.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 8.1%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2023-0206
-
cpe:2.3:h:nvidia:dgx_a100:-
-
cpe:2.3:o:nvidia:dgx_a100_firmware:-
-
cpe:2.3:o:nvidia:dgx_a100_firmware:1.8