First published: Wed Mar 05 2025(Updated: )
NVIDIA Hopper HGX for 8-GPU contains a vulnerability in the HGX Management Controller (HMC) that may allow a malicious actor with administrative access on the BMC to access the HMC as an administrator. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
NVIDIA Hopper HGX |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0114 is considered a critical vulnerability due to its potential to allow unauthorized access and execution of arbitrary code.
To remediate CVE-2024-0114, apply the latest security patches provided by NVIDIA for the Hopper HGX management controller.
Organizations using NVIDIA Hopper HGX systems with administrative access to the HMC are affected by CVE-2024-0114.
Successful exploitation of CVE-2024-0114 may lead to code execution, denial of service, and unauthorized access.
A temporary workaround for CVE-2024-0114 may include limiting administrative access to the management controller until a patch is implemented.