NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may cause an SMI callout vulnerability that could be used to execute arbitrary code at the SMM level. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, and information disclosure.
Advisories
Source ID Title
EUVD EUVD EUVD-2023-35372 NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may cause an SMI callout vulnerability that could be used to execute arbitrary code at the SMM level. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, and information disclosure.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: nvidia

Published:

Updated: 2024-08-30T19:10:51.835Z

Reserved: 2023-04-22T02:38:33.414Z

Link: CVE-2023-31035

cve-icon Vulnrichment

Updated: 2024-08-02T14:45:25.188Z

cve-icon NVD

Status : Modified

Published: 2024-01-12T19:15:11.057

Modified: 2024-11-21T08:01:17.547

Link: CVE-2023-31035

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.