Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-25505


NVIDIA DGX-1 BMC contains a vulnerability in the IPMI handler of the AMI MegaRAC BMC , where an attacker with the appropriate level of authorization can cause a buffer overflow, which may lead to denial of service, information disclosure, or arbitrary code execution.


Published

2023-04-22T03:15:10.043

Last Modified

2024-11-21T07:49:37.860

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-120
  • Type: Primary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System nvidia bmc < 3.39.30 Yes
Hardware nvidia dgx-1 - No

References