CVE-2024-0102: Medium severity nvidia cuda toolkit vulnerability
Published Aug 8, 2024
·Updated
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm, where an attacker can cause an out-of-bounds read issue by deceiving a user into reading a malformed ELF file. A successful exploit of this vulnerability might lead to denial of service.
Affected Software
3 affected components
All of the following
Nvidia CUDA Toolkit<12.6.0
Any of the following
Linux Linux kernel
Microsoft Windows
Event History
Aug 8, 2024
CVE Published
via MITRE·04:12 PM
Data Sourced
via MITRE·04:12 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-0102?
CVE-2024-0102 is classified with a severity that may lead to denial of service.
2
How do I fix CVE-2024-0102?
To fix CVE-2024-0102, update to the latest version of NVIDIA CUDA Toolkit beyond version 12.6.0.
3
What platforms are affected by CVE-2024-0102?
CVE-2024-0102 affects all platforms that utilize NVIDIA CUDA Toolkit.
4
Can CVE-2024-0102 be exploited remotely?
CVE-2024-0102 requires user interaction to exploit, as it involves processing a malformed ELF file.
5
What component of NVIDIA CUDA Toolkit is vulnerable in CVE-2024-0102?
The specific component vulnerable in CVE-2024-0102 is nvdisasm.