First published: Fri Jan 12 2024(Updated: )
NVIDIA DGX A100 BMC contains a vulnerability where a user may cause a missing authentication issue for a critical function by an adjacent network . A successful exploit of this vulnerability may lead to escalation of privileges, code execution, denial of service, information disclosure, and data tampering.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
NVIDIA DGX A100 firmware | <00.22.05 | |
NVIDIA DGX A100 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-31033 is considered a critical vulnerability due to its potential for privilege escalation and denial of service.
To mitigate CVE-2023-31033, users should update the NVIDIA DGX A100 firmware to the latest version that is above 00.22.05.
CVE-2023-31033 affects NVIDIA DGX A100 systems with BMC firmware versions up to 00.22.05.
Exploitation of CVE-2023-31033 may lead to unauthorized privilege escalation, code execution, or denial of service.
CVE-2023-31033 can be exploited by an adjacent network user due to the missing authentication issue.