CVE-2023-0196: Null Pointer Dereference
Published Mar 2, 2023
·Updated
NVIDIA CUDA Toolkit SDK contains a bug in cuobjdump, where a local user running the tool against an ill-formed binary may cause a null- pointer dereference, which may result in a limited denial of service.
Affected Software
3 affected components
Nvidia CUDA Toolkit<12.1
Linux Linux kernel
Microsoft Windows
Remediation
Patch Available
Event History
Mar 2, 2023
CVE Published
via MITRE·01:23 AM
Data Sourced
via MITRE·01:23 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this NVIDIA CUDA Toolkit SDK bug?
The vulnerability ID for this NVIDIA CUDA Toolkit SDK bug is CVE-2023-0196.
2
What is the affected software for this vulnerability?
The affected software for this vulnerability is NVIDIA CUDA Toolkit.
3
What is the severity of CVE-2023-0196?
The severity of CVE-2023-0196 is low with a severity value of 3.3.
4
How can a local user exploit this vulnerability?
A local user can exploit this vulnerability by running the cuobjdump tool against an ill-formed binary.
5
Is there a fix available for this vulnerability?
It is recommended to update to a version of NVIDIA CUDA Toolkit that is not affected by this vulnerability.