Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mqfm-vc95-gg95

Опубликовано: 03 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.2

Описание

NVIDIA DGX A100 contains a vulnerability in SBIOS in the BiosCfgTool, where a local user with elevated privileges can read and write beyond intended bounds in SMRAM, which may lead to code execution, escalation of privileges, denial of service, and information disclosure. The scope of impact can extend to other components.

NVIDIA DGX A100 contains a vulnerability in SBIOS in the BiosCfgTool, where a local user with elevated privileges can read and write beyond intended bounds in SMRAM, which may lead to code execution, escalation of privileges, denial of service, and information disclosure. The scope of impact can extend to other components.

EPSS

Процентиль: 18%
0.00059
Низкий

8.2 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 8.2
nvd
больше 3 лет назад

NVIDIA DGX A100 contains a vulnerability in SBIOS in the BiosCfgTool, where a local user with elevated privileges can read and write beyond intended bounds in SMRAM, which may lead to code execution, escalation of privileges, denial of service, and information disclosure. The scope of impact can extend to other components.

CVSS3: 8.2
fstec
больше 3 лет назад

Уязвимость компонента SBIOS в BiosCfgTool сервера NVIDIA DGX A100, позволяющая нарушителю выполнить произвольный код, повысить свои привилегии или вызвать отказ в обслуживании

EPSS

Процентиль: 18%
0.00059
Низкий

8.2 High

CVSS3

Дефекты

CWE-787