Описание
NVIDIA Dynamo for Linux contains a vulnerability in the multimodal embedding cache, where an attacker could cause a hash collision by submitting images that share an identical pixel byte sequence but have different dimensions. A successful exploit of this vulnerability might lead to data tampering.
Ссылки
- Product
- Third Party AdvisoryUS Government Resource
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.1.0 (включая)
Одновременно
cpe:2.3:a:nvidia:dynamo:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
EPSS
Процентиль: 31%
0.00384
Низкий
7.5 High
CVSS3
Дефекты
CWE-1023
Связанные уязвимости
CVSS3: 7.5
github
9 дней назад
NVIDIA Dynamo for Linux contains a vulnerability in the multimodal embedding cache, where an attacker could cause a hash collision by submitting images that share an identical pixel byte sequence but have different dimensions. A successful exploit of this vulnerability might lead to data tampering.
EPSS
Процентиль: 31%
0.00384
Низкий
7.5 High
CVSS3
Дефекты
CWE-1023