First published: Sat Apr 22 2023(Updated: )
NVIDIA ConnectX-5, ConnectX-6, and ConnectX6-DX contain a vulnerability in the NIC firmware, where an unprivileged user can cause improper handling of exceptional conditions, which may lead to denial of service.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nvidia Connectx Firmware | <35.1012 | |
NVIDIA ConnectX-5 | ||
Nvidia Connectx-6 | ||
Nvidia Connectx-6-dx |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-0204.
The affected software for this vulnerability includes NVIDIA ConnectX-5, ConnectX-6, and ConnectX6-DX.
The severity of CVE-2023-0204 is high with a severity value of 7.7.
An unprivileged user can exploit this vulnerability by causing improper handling of exceptional conditions in the NIC firmware.
To fix this vulnerability, it is recommended to update the NVIDIA ConnectX firmware to version 35.1012 or higher.