CWE
121 787
Advisory Published
Updated

CVE-2023-31030: CVE

First published: Fri Jan 12 2024(Updated: )

NVIDIA DGX A100 BMC contains a vulnerability in the host KVM daemon, where an unauthenticated attacker may cause a stack overflow by sending a specially crafted network packet. A successful exploit of this vulnerability may lead to arbitrary code execution, denial of service, information disclosure, and data tampering.

Credit: psirt@nvidia.com

Affected SoftwareAffected VersionHow to fix
All of
NVIDIA DGX Station A100 firmware<00.22.05
NVIDIA DGX A100 firmware

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2023-31030?

    CVE-2023-31030 is classified as a critical severity vulnerability due to the potential for arbitrary code execution.

  • How do I fix CVE-2023-31030?

    To fix CVE-2023-31030, update the NVIDIA DGX A100 firmware to a version above 00.22.05.

  • Who is affected by CVE-2023-31030?

    CVE-2023-31030 affects all NVIDIA DGX A100 systems running firmware version 00.22.05 or earlier.

  • Can CVE-2023-31030 be exploited remotely?

    Yes, CVE-2023-31030 can be exploited remotely by sending specially crafted network packets.

  • What are the potential impacts of exploiting CVE-2023-31030?

    Exploiting CVE-2023-31030 may lead to arbitrary code execution, denial of service, and exposure of sensitive information.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203