NVIDIA DGX-1 contains a vulnerability in Ofbd in AMI SBIOS, where a preconditioned heap can allow a user with elevated privileges to cause an access beyond the end of a buffer, which may lead to code execution, escalation of privileges, denial of service and information disclosure. The scope of the impact of this vulnerability can extend to other components.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: nvidia

Published: 2023-04-22T02:30:26.791Z

Updated: 2024-08-02T11:25:18.390Z

Reserved: 2023-02-07T02:57:11.656Z

Link: CVE-2023-25506

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-04-22T03:15:10.107

Modified: 2023-04-29T03:05:54.553

Link: CVE-2023-25506

cve-icon Redhat

No data.