Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-0109

Опубликовано: 31 авг. 2024
Источник: redhat
CVSS3: 3.3

Описание

NVIDIA CUDA Toolkit contains a vulnerability in command cuobjdump where a user may cause a crash by passing in a malformed ELF file. A successful exploit of this vulnerability may cause an out of bounds read in the unprivileged process memory which could lead to a limited denial of service.

A flaw was found in NVIDIA CUDA Toolkit. Affected versions of this package contain a vulnerability in command cuobjdump, where a user may cause a crash by passing in a malformed ELF file. This issue may allow an out of bounds read in the unprivileged process memory, which could lead to a limited denial of service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
OpenShift Lightspeedopenshift-lightspeed-beta/lightspeed-service-api-rhel9Fix deferred
Red Hat Enterprise Linux AI (RHEL AI)rhelai1/bootc-nvidia-rhel9Fix deferred
Red Hat Enterprise Linux AI (RHEL AI)rhelai1/instructlab-nvidia-rhel9Fix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2308798NVIDIA CUDA Toolkit: Denial of service in NVIDIA CUDA

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 3.3
ubuntu
больше 1 года назад

NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` where a user may cause a crash by passing in a malformed ELF file. A successful exploit of this vulnerability may cause an out of bounds read in the unprivileged process memory which could lead to a limited denial of service.

CVSS3: 3.3
nvd
больше 1 года назад

NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` where a user may cause a crash by passing in a malformed ELF file. A successful exploit of this vulnerability may cause an out of bounds read in the unprivileged process memory which could lead to a limited denial of service.

CVSS3: 3.3
debian
больше 1 года назад

NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` wh ...

CVSS3: 3.3
github
больше 1 года назад

NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` where a user may cause a crash by passing in a malformed ELF file. A successful exploit of this vulnerability may cause an out of bounds read in the unprivileged process memory which could lead to a limited denial of service.

CVSS3: 3.3
fstec
больше 1 года назад

Уязвимость утилиты cuobjdump программного средства для параллельных вычислений на графических процессорах NVIDIA CUDA Toolkit, позволяющая нарушителю вызвать отказ в обслуживании

3.3 Low

CVSS3