CVE-2022-42272: Buffer Overflow
Published Jan 12, 2023
·Updated
NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow, which may lead to code execution, denial of service or escalation of privileges.
Affected Software
2 affected components
Nvidia Dgx A100 Firmware<00.19.07
Nvidia DGX A100
Event History
Jan 12, 2023
CVE Published
via MITRE·10:16 PM
Data Sourced
via MITRE·10:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-42272?
CVE-2022-42272 is a vulnerability found in NVIDIA BMC where an authorized attacker can cause a buffer overflow, leading to code execution, denial of service, or escalation of privileges.
2
What is the severity of CVE-2022-42272?
The severity of CVE-2022-42272 is high with a severity value of 8.8.
3
How does CVE-2022-42272 impact NVIDIA DGX A100?
NVIDIA DGX A100 is not vulnerable to CVE-2022-42272.
4
What is the affected version of NVIDIA DGX A100 Firmware?
The affected version of NVIDIA DGX A100 Firmware is up to exclusive version 00.19.07.
5
How can I fix CVE-2022-42272?
To fix CVE-2022-42272, it is recommended to apply the necessary security patches provided by NVIDIA.