Denial of Service Vulnerability in NVIDIA CUDA Toolkit
CVE-2024-0072
3.3LOW
Summary
The NVIDIA CUDA Toolkit presents a vulnerability affecting the cuobjdump and nvdisasm utilities, where specially crafted ELF files can be utilized by an attacker to induce a crash. This exploitation can result in a partial denial of service, impacting the performance and availability of applications reliant on the CUDA environment.
Affected Version(s)
NVIDIA CUDA Toolkit All versions prior to CUDA Toolkit v12.4
References
CVSS V3.1
Score:
3.3
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published