First published: Sat Aug 31 2024(Updated: )
NVIDIA CUDA Toolkit contains a vulnerability in command 'cuobjdump' where a user may cause a crash or produce incorrect output by passing a malformed ELF file. A successful exploit of this vulnerability may lead to a limited denial of service or data tampering.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
NVIDIA CUDA Toolkit | <=12.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0111 has been classified as a vulnerability that may lead to limited denial of service or data tampering.
To mitigate CVE-2024-0111, ensure that you are using an updated version of the NVIDIA CUDA Toolkit that addresses this vulnerability.
CVE-2024-0111 affects versions of the NVIDIA CUDA Toolkit up to and including 12.6.0.
Exploitation of CVE-2024-0111 may result in application crashes or incorrect output when processing malformed ELF files.
Exploitation of CVE-2024-0111 requires the user to provide a specifically crafted malformed ELF file to trigger the vulnerability.