Denial of Service Vulnerability in NVIDIA CUDA Toolkit
CVE-2024-0072

3.3LOW

Key Information:

Vendor
Nvidia
Vendor
CVE Published:
5 April 2024

Summary

The NVIDIA CUDA Toolkit presents a vulnerability affecting the cuobjdump and nvdisasm utilities, where specially crafted ELF files can be utilized by an attacker to induce a crash. This exploitation can result in a partial denial of service, impacting the performance and availability of applications reliant on the CUDA environment.

Affected Version(s)

NVIDIA CUDA Toolkit All versions prior to CUDA Toolkit v12.4

References

CVSS V3.1

Score:
3.3
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

.