Vulnerability Details CVE-2023-31024
NVIDIA DGX A100 BMC contains a vulnerability in the host KVM daemon, where an unauthenticated attacker may cause stack memory corruption by sending a specially crafted network packet. A successful exploit of this vulnerability may lead to arbitrary code execution, denial of service, information disclosure, and data tampering.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 56.7%
CVSS Severity
CVSS v3 Score 9.0
Products affected by CVE-2023-31024
-
cpe:2.3:h:nvidia:dgx_a100:-
-
cpe:2.3:o:nvidia:dgx_a100_firmware:-
-
cpe:2.3:o:nvidia:dgx_a100_firmware:00.19.07