VYPR
Unrated severityNVD Advisory· Published Jul 3, 2023· Updated Nov 27, 2024

CVE-2023-25521

CVE-2023-25521

Description

NVIDIA DGX A100/A800 contains a vulnerability in SBIOS where an attacker may cause execution with unnecessary privileges by leveraging a weakness whereby proper input parameter validation is not performed. A successful exploit of this vulnerability may lead to denial of service, information disclosure, and data tampering.

Affected products

2
  • Nvidia/DGX A100llm-fuzzy2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: All SBIOS versions prior to 1.21

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.