NVIDIA DCGM, all versions prior to 2.2.9, contains a vulnerability in the DIAG module where any user can inject shared libraries into the DCGM server, which is usually running as root, which may lead to privilege escalation, total loss of confidentiality and integrity, and complete denial of service.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://nvidia.custhelp.com/app/answers/detail/a_id/5219 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: nvidia
Published: 2021-08-13T15:42:02
Updated: 2024-08-04T00:12:50.048Z
Reserved: 2021-06-09T00:00:00
Link: CVE-2021-34398
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-08-13T16:15:07.540
Modified: 2024-11-21T06:10:18.970
Link: CVE-2021-34398
Redhat
No data.