CVE
CVE-2023-31029

9.3CRITICAL

Key Information:

Vendor

Nvidia

Status
Vendor
CVE Published:
12 January 2024

What is CVE-2023-31029?

The NVIDIA DGX A100 baseboard management controller (BMC) is susceptible to a vulnerability found within the host KVM daemon. This vulnerability allows unauthenticated attackers to send specially crafted network packets, potentially causing a stack overflow. Exploiting this vulnerability may enable attackers to execute arbitrary code, trigger denial-of-service conditions, disclose sensitive information, or tamper with data integrity. Users of affected products should take appropriate measures to mitigate potential risks associated with this security issue.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

DGX A100 All BMC versions prior to 00.22.05

References

CVSS V3.1

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.