CVE-2023-31029: CVE
NVIDIA DGX A100 baseboard management controller (BMC) contains a vulnerability in the host KVM daemon, where an unauthenticated attacker may cause a stack overflow by sending a specially crafted network packet. A successful exploit of this vulnerability may lead to arbitrary code execution, denial of service, information disclosure, and data tampering.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-31029?
CVE-2023-31029 is considered a critical vulnerability due to the potential for stack overflow and arbitrary code execution.
How do I fix CVE-2023-31029?
To fix CVE-2023-31029, you should update the NVIDIA DGX A100 firmware to version 00.22.05 or later.
Who is affected by CVE-2023-31029?
CVE-2023-31029 affects systems running the NVIDIA DGX A100 firmware prior to version 00.22.05.
What could an attacker achieve by exploiting CVE-2023-31029?
An attacker exploiting CVE-2023-31029 could gain the ability to execute arbitrary code on the affected system.
Is authentication required to exploit CVE-2023-31029?
No, CVE-2023-31029 can be exploited by an unauthenticated attacker.