Memory Modification Vulnerability in NVIDIA DGX A100 SBIOS
CVE-2023-0206
7.5HIGH
What is CVE-2023-0206?
NVIDIA DGX A100 SBIOS has a vulnerability that allows an attacker to manipulate arbitrary memory within SMRAM by exploiting the NVME SMM API. This exploitation could potentially result in denial of service, privilege escalation, and information disclosure, thereby jeopardizing the integrity and confidentiality of system operations.
Affected Version(s)
NVIDIA DGX servers All SBIOS versions prior to 1.18